From 17ef46e849dd1073fc4445834519f983985135fa Mon Sep 17 00:00:00 2001 From: Stefan Kangas Date: Sun, 26 Jan 2025 22:58:13 +0100 Subject: [PATCH] ; * etc/NEWS: Note CVE-2024-53920 further up also. --- etc/NEWS | 3 +++ 1 file changed, 3 insertions(+) diff --git a/etc/NEWS b/etc/NEWS index 53f75d120d2..fbfb9086430 100644 --- a/etc/NEWS +++ b/etc/NEWS @@ -188,10 +188,13 @@ expectations. This option lists those files and directories whose content Emacs should consider as sufficiently trusted to run any part of the code contained therein even without any explicit user request. + For example, Flymake's backend for Emacs Lisp consults this option and disables itself with an "untrusted content" warning if the file is not listed. +This option is used to fix CVE-2024-53920. See below for details. + ** Emacs now supports Unicode Standard version 15.1. ** Emacs now comes with Org v9.7.