Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Debian 9: DSA-3786-1 Moderate: Vim Buffer Overflow Risk

debian
Calendar Grey February 13, 2017
Debian Logo
Debian's advisory DSA-3786-1 reveals a critical security issue in Vim linked to a buffer overflow, risking code execution. Users must upgrade Vim to safeguard their systems against this threat
Editor spell files passed to the vim (Vi IMproved) editor may result in an integer overflow in memory allocation and a resulting buffer overflow which potentially could result in t...

Summary

Editor spell files passed to the vim (Vi IMproved) editor
may result in an integer overflow in memory allocation
and a resulting buffer overflow which potentially
could result in the execution of arbitrary code or denial of
service.

For the stable distribution (jessie), this problem has been
fixed in version 2:7.4.488-7+deb8u2.

For the unstable distribution (sid), this problem has been
fixed in version 2:8.0.0197-2.

We recommend that you upgrade your vim packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: vim
CVE ID: CVE-2017-5953

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here