delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2012/08/27/22:43:35

X-Recipient: archive-cygwin AT delorie DOT com
X-SWARE-Spam-Status: No, hits=-2.9 required=5.0 tests=ALL_TRUSTED,BAYES_00
X-Spam-Check-By: sourceware.org
X-SWARE-Spam-Status: No, hits=-1.4 required=5.0 tests=AWL,BAYES_00,RP_MATCHES_RCVD,SPF_NEUTRAL
Message-Id: <announce.503C2B5F.7080905@cornell.edu>
Date: Mon, 27 Aug 2012 22:22:23 -0400
From: Ken Brown <kbrown AT cornell DOT edu>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:14.0) Gecko/20120713 Thunderbird/14.0
MIME-Version: 1.0
To: cygwin AT cygwin DOT com
Subject: [ANNOUNCEMENT] Updated: {emacs,emacs-X11,emacs-el}-{23.4-3,24.2-1} [SECURITY]
X-PMX-CORNELL-SPAM-CHECKED: Pawpaw
X-Original-Sender: kbrown AT cornell DOT edu - Mon Aug 27 22:22:26 2012
X-PMX-CORNELL-REASON: CU_White_List_Override
Reply-To: cygwin AT cygwin DOT com
X-IsSubscribed: yes
Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm
List-Id: <cygwin.cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe AT cygwin DOT com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-help AT cygwin DOT com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
Delivered-To: mailing list cygwin AT cygwin DOT com

The current version of the GNU emacs packages in the Cygwin distribution 
has been updated to the latest upstream release:

*** emacs-24.2-1
*** emacs-X11-24.2-1
*** emacs-el-24.2-1
*** emacs-debuginfo-24.2-1

This is a bugfix release.  It fixes a security flaw that allowed 
automatic code execution via file-local variables when the user option 
`enable-local-variables' was changed from its default value to `:safe' 
(CVE-2012-3479), plus many other bugs.

I have also applied the security fix to the previous version:

*** emacs-23.4-3
*** emacs-X11-23.4-3
*** emacs-el-23.4-3

Emacs is a powerful, customizable, self-documenting, modeless text 
editor.  Emacs contains special code editing features, a scripting 
language (elisp), and the capability to read mail, news, and more 
without leaving the editor.

CYGWIN NOTES
============
Install the emacs-X11 package if you want to use the X11 GUI.  You can 
then type 'emacs&' in an xterm window, and emacs will start in a new 
window.  If you have sshd running and want to be able to run the GUI 
version of emacs from a remote machine, you need to enable X11 
forwarding by adding the following line to /etc/sshd_config:

   X11Forwarding yes

The script /usr/bin/make-emacs-shortcut can be used to create a shortcut 
for starting emacs.  The shortcut starts emacs under X if an X server is 
running and in a mintty window otherwise.  Edit the shortcut and/or the 
script if you want different behavior.

You will need the cygutils package to run the script, and you will need 
mintty and run2 to use the shortcut.  In addition, the user who runs the 
script needs to be able to write to /usr/local/bin.

Ken Brown
Cygwin emacs maintainer

                    *** CYGWIN-ANNOUNCE UNSUBSCRIBE INFO ***

If you want to unsubscribe from the cygwin-announce mailing list, look 
at the "List-Unsubscribe: " tag in the email header of this message. 
Send email to the address specified there.  It will be in the format:

        cygwin-announce-unsubscribe-you=yourdomain DOT com AT cygwin DOT com

If you need more information on unsubscribing, start reading here:

        http://sourceware.org/lists.html#unsubscribe-simple

Please read *all* of the information on unsubscribing that is available 
starting at the above URL.



--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019