S48 develops Scheme48, an implementation of the Scheme programming language, with a focused vulnerability footprint centered on file-access handling. The observed weakness involves improper link resolution before file access, a class of flaw characteristic of systems that process filesystem paths without adequate validation of symlink traversal. Current exploitation activity, severity levels, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by S48 over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-4150MEDIUM The scheme48-send-definition function in cmuscheme48.el in Scheme 48 allows local users to write to arbitrary files via a symlink attack on /tmp/s48lose.tmp. | Jul 20, 2018 | 5.5 | 16 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by S48.
Media articles that mention a CVE ID that affects a product developed by S48 — matched by CVE ID, not by vendor name.