Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia: 2023-0075 Critical: Vim Null Pointer And Buffer Overflow

mageia
Calendar Grey March 1, 2023
Dist Mageia Esm H88
Recently, the latest vim updates were released to resolve serious null reference problems and buffer overflow flaws in Mageia. Find out additional details!
A null pointer dereference issue was discovered in function gui_x11_create_blank_mouse in gui_x11.c in vim 8.1.2269 thru 9.0.0339 allows attackers to cause denial of service or oth...

Summary

A null pointer dereference issue was discovered in function gui_x11_create_blank_mouse in gui_x11.c in vim 8.1.2269 thru 9.0.0339 allows attackers to cause denial of service or other unspecified impacts. (CVE-2022-47024)
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225. (CVE-2023-0433)

References

- https://bugs.mageia.org/show_bug.cgi?id=31490

- https://ubuntu.com/security/notices/USN-5836-1

-

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/PZWIJBSQX53P7DHV77KRXJIXA4GH7XHC/

- https://www.cve.org/CVERecord?id=CVE-2022-47024

- https://www.cve.org/CVERecord?id=CVE-2023-0433

Resolution

SRPMS

- 8/core/vim-9.0.1314-1.mga8

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 01 Mar 2023
URL: https://advisories.mageia.org/MGASA-2023-0075.html
Type: security
CVE: CVE-2022-47024, CVE-2023-0433

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here