[ubuntu/bionic-security] vim 2:8.0.1453-1ubuntu1.6 (Accepted)

Spyros Seimenis spyros.seimenis at canonical.com
Tue Sep 28 09:51:13 UTC 2021


vim (2:8.0.1453-1ubuntu1.6) bionic-security; urgency=medium

  * SECURITY UPDATE: Fix heap-based buffer overflow when reading beyond end of
    line with invalid utf-8 character
    - debian/patches/CVE-2021-3778.patch: Validate encoding of character before
      advancing line in regexp_nfa.c.
    - CVE-2021-3778
  * SECURITY UPDATE: Fix use after free when replacing
    - debian/patches/CVE-2021-3796.patch: Get the line pointer after calling
      ins_copychar() in src/normal.c.
    - CVE-2021-3796

Date: 2021-09-23 21:31:17.594399+00:00
Changed-By: Spyros Seimenis <spyros.seimenis at canonical.com>
https://launchpad.net/ubuntu/+source/vim/2:8.0.1453-1ubuntu1.6
-------------- next part --------------
Sorry, changesfile not available.


More information about the Bionic-changes mailing list