All errata/p10_e2k/ALT-PU-2024-7451-1
ALT-PU-2024-7451-1

Package update vim in branch p10_e2k

Version9.1.0050-alt3
Task#0
Published2024-05-03
Max severityHIGH
Severity:

Closed issues (2)

BDU:2024-02840
HIGH7.8

Уязвимость функции Did_set_langmap() текстового редактора vim, позволяющая нарушителю выполнить произвольный код

Published: 2024-04-11Modified: 2025-03-05
CVSS 3.xHIGH 7.8
CVSS:3.x/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.0MEDIUM 6.8
CVSS:2.0/AV:L/AC:L/Au:S/C:C/I:C/A:C
References
CVE-2024-22667
HIGH7.8

Vim before 9.0.2142 has a stack-based buffer overflow because did_set_langmap in map.c calls sprintf to write to the error buffer that is passed down to the option callback functions.

Published: 2024-02-05Modified: 2025-11-04
CVSS 3.xHIGH 7.8
CVSS:3.x/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Closed bugs (2)

vim-common and vim-minimal conflict on merged-usr