Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:0366

Опубликовано: 01 фев. 2022
Источник: rocky
Оценка: Moderate

Описание

Moderate: vim security update

Vim (Vi IMproved) is an updated and improved version of the vi editor.

Security Fix(es):

  • vim: heap-based buffer overflow in win_redr_status() in drawscreen.c (CVE-2021-3872)

  • vim: illegal memory access in find_start_brace() in cindent.c when C-indenting (CVE-2021-3984)

  • vim: heap-based buffer overflow in find_help_tags() in help.c (CVE-2021-4019)

  • vim: use-after-free in win_linetabsize() (CVE-2021-4192)

  • vim: out-of-bound read in getvcol() (CVE-2021-4193)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
vim-minimalx86_6416.el8_5.4vim-minimal-8.0.1763-16.el8_5.4.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
около 4 лет назад

ELSA-2022-0366: vim security update (MODERATE)

suse-cvrf
почти 4 года назад

Security update for vim

suse-cvrf
почти 4 года назад

Security update for vim

suse-cvrf
больше 3 лет назад

Security update for vim

CVSS3: 7.8
ubuntu
больше 4 лет назад

vim is vulnerable to Heap-based Buffer Overflow