ALT-BU-2023-2189-1
Branch sisyphus_mipsel update bulletin.
Package python3-module-pydantic updated to version 1.10.4-alt1 for branch sisyphus_mipsel.
Closed bugs
Просьба временно отключить %check и обновить.
Package vim updated to version 9.0.1174-alt1 for branch sisyphus_mipsel.
Closed vulnerabilities
BDU:2023-00068
Уязвимость функции build_stl_str_hl() (buffer.c) текстового редактора Vim, позволяющая нарушителю выполнить произвольный код
BDU:2023-00069
Уязвимость функции msg_puts_printf() (message.c) текстового редактора Vim, позволяющая нарушителю выполнить произвольный код в целевой системе
BDU:2023-00070
Уязвимость функции do_string_sub() (eval.c) текстового редактора Vim, позволяющая нарушителю выполнить произвольный код
Modified: 2025-01-17
CVE-2023-0049
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143.
- 20230327 APPLE-SA-2023-03-27-3 macOS Ventura 13.3
- 20230327 APPLE-SA-2023-03-27-3 macOS Ventura 13.3
- https://github.com/vim/vim/commit/7b17eb4b063a234376c1ec909ee293e42cff290c
- https://github.com/vim/vim/commit/7b17eb4b063a234376c1ec909ee293e42cff290c
- https://huntr.dev/bounties/5e6f325c-ba54-4bf0-b050-dca048fd3fd9
- https://huntr.dev/bounties/5e6f325c-ba54-4bf0-b050-dca048fd3fd9
- FEDORA-2023-0f6a9433cf
- FEDORA-2023-0f6a9433cf
- FEDORA-2023-208f2107d5
- FEDORA-2023-208f2107d5
- GLSA-202305-16
- GLSA-202305-16
- https://security.netapp.com/advisory/ntap-20250117-0005/
- https://support.apple.com/kb/HT213670
- https://support.apple.com/kb/HT213670
Modified: 2024-11-21
CVE-2023-0051
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144.
- 20230327 APPLE-SA-2023-03-27-3 macOS Ventura 13.3
- 20230327 APPLE-SA-2023-03-27-3 macOS Ventura 13.3
- https://github.com/vim/vim/commit/c32949b0779106ed5710ae3bffc5053e49083ab4
- https://github.com/vim/vim/commit/c32949b0779106ed5710ae3bffc5053e49083ab4
- https://huntr.dev/bounties/1c8686db-baa6-42dc-ba45-aed322802de9
- https://huntr.dev/bounties/1c8686db-baa6-42dc-ba45-aed322802de9
- GLSA-202305-16
- GLSA-202305-16
- https://support.apple.com/kb/HT213670
- https://support.apple.com/kb/HT213670
Modified: 2024-11-21
CVE-2023-0054
Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1145.
- 20230327 APPLE-SA-2023-03-27-3 macOS Ventura 13.3
- 20230327 APPLE-SA-2023-03-27-3 macOS Ventura 13.3
- https://github.com/vim/vim/commit/3ac1d97a1d9353490493d30088256360435f7731
- https://github.com/vim/vim/commit/3ac1d97a1d9353490493d30088256360435f7731
- https://huntr.dev/bounties/b289ee0f-fd16-4147-bd01-c6289c45e49d
- https://huntr.dev/bounties/b289ee0f-fd16-4147-bd01-c6289c45e49d
- [debian-lts-announce] 20230612 [SECURITY] [DLA 3453-1] vim security update
- [debian-lts-announce] 20230612 [SECURITY] [DLA 3453-1] vim security update
- GLSA-202305-16
- GLSA-202305-16
- https://support.apple.com/kb/HT213670
- https://support.apple.com/kb/HT213670
Package caddy updated to version 2.6.2-alt1 for branch sisyphus_mipsel.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2022-34037
An out-of-bounds read in the rewrite function at /modules/caddyhttp/rewrite/rewrite.go in Caddy v2.5.1 allows attackers to cause a Denial of Service (DoS) via a crafted URI. Note: This has been disputed as a bug, not a security vulnerability, in the Caddy web server that emerged when an administrator's bad configuration containing a malformed request URI caused the server to return an empty reply instead of a valid HTTP response to the client.
Package mate-menu updated to version 22.04.2-alt2 for branch sisyphus_mipsel.
Closed bugs
Расхождение версий в mate-menu