CVE-2014-4150: s48 SCHEME48

Medium severity, CVSS 5.5. EPSS: 0.5% chance of exploitation in the next 30 days.

The scheme48-send-definition function in cmuscheme48.el in Scheme 48 allows local users to write to arbitrary files via a symlink attack on /tmp/s48lose.tmp.

Affected products

  • s48 SCHEME48: affected versions not specified

Published 2018-07-20. Last modified 2026-06-17.