Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-79992— Emacs: emacs: command injection via crafted filenames in tramp

Quick assessment

Affected
Red Hat Red Hat Enterprise Linux 10
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

emacs TRAMP是emacs团队的一个支持多协议远程文件访问的编辑组件。 emacs TRAMP存在命令注入漏洞,该漏洞源于TRAMP未正确清理登录参数即拼接并传递给本地shell,可能导致任意代码执行。

CVSS 7.8 · High EPSS 0.14% · P3

Possible ATT&CK Techniques 1 AI

T1059 · Command and Scripting Interpreter

Affected Version Matrix 5

Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-79992

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Emacs: emacs: command injection via crafted filenames in tramp
Source: CVE Program / CVE List V5
Vulnerability Description
A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Source: CVE Program / CVE List V5
Vulnerability Title
emacs TRAMP 命令注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
emacs TRAMP是emacs团队的一个支持多协议远程文件访问的编辑组件。 emacs TRAMP存在命令注入漏洞,该漏洞源于TRAMP未正确清理登录参数即拼接并传递给本地shell,可能导致任意代码执行。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Red Hat Red Hat Enterprise Linux 10 - cpe:/o:redhat:enterprise_linux:10
Red Hat Red Hat Enterprise Linux 6 - cpe:/o:redhat:enterprise_linux:6
Red Hat Red Hat Enterprise Linux 7 - cpe:/o:redhat:enterprise_linux:7
Red Hat Red Hat Enterprise Linux 8 - cpe:/o:redhat:enterprise_linux:8
Red Hat Red Hat Enterprise Linux 9 - cpe:/o:redhat:enterprise_linux:9

II. Public POCs for CVE-2026-79992

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-79992

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-79992 (2)

Same Patch Batch · Red Hat · 2026-08-25 · 9 CVEs total

CVE-2026-79655 7.8 HIGH Sos: sos: path traversal in sos clean tar extraction via unvalidated symlink/hardlink targ
CVE-2026-80186 7.6 HIGH Bluez: stack overflow in name2utf8 causes dos and potential code execution
CVE-2026-78322 6.5 MEDIUM File-roller: file-roller: stack buffer overflow in parse_progress_line for 7z and rar hand
CVE-2026-78701 6.5 MEDIUM 389-ds-base: 389-ds-base: cve-2026-11610 incomplete fix may introduce a connection-stall d
CVE-2026-79717 6.4 MEDIUM Galaxy_ng: galaxy_ng: blind ssrf via namespace avatar_url with no private-address restrict
CVE-2026-79652 5.9 MEDIUM Keycloak-services: keycloak-services: jwt bearer authorization grant does not enforce cons
CVE-2026-80185 5.7 MEDIUM Bluez: sdp-xml: bluez 5.86: unprivileged-local and adjacent-le-peer leads to arbitrary cod
CVE-2026-77680 5.3 MEDIUM Libsoup3: libsoup: quadratic cpu denial of service in http range coalescing after cve-2025

IV. Related Vulnerabilities

V. Comments for CVE-2026-79992

No comments yet


Leave a comment