-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security]  vim (SSA:2008-210-10)

New vim packages are available for Slackware 11.0, 12.0,
12.1, and -current to fix security issues.

More details about this issue may be found here:

  

Here are the details from the Slackware 12.1 ChangeLog:
+--------------------------+
patches/packages/vim-7.1.330-i486-1_slack12.1.tgz:
  Upgraded to vim-7.1.330.  This fixes several security issues related to
  the automatic processing of untrusted files.
  For more information, see:
      (* Security fix *)
patches/packages/vim-gvim-7.1.330-i486-1_slack12.1.tgz:
  Upgraded to vim-gvim-7.1.330.
  See "vim" above for details.
  (* Security fix *)
+--------------------------+


Where to find the new packages:
+-----------------------------+

HINT:  Getting slow download speeds from ftp.slackware.com?
Give slackware.osuosl.org a try.  This is another primary FTP site
for Slackware that can be considerably faster than downloading
directly from ftp.slackware.com.

Thanks to the friendly folks at the OSU Open Source Lab
(https://osuosl.org/) for donating additional FTP and rsync hosting
to the Slackware project!  :-)

Also see the "Get Slack" section on http://www.slackware.com/ for
additional mirror sites near you.

Updated packages for Slackware 11.0:
ftp://ftp.slackware.com/pub/slackware/slackware-11.0/patches/packages/vim-7.1.330-i486-1_slack11.0.tgz
ftp://ftp.slackware.com/pub/slackware/slackware-11.0/patches/packages/vim-gvim-7.1.330-i486-1_slack11.0.tgz

Updated packages for Slackware 12.0:
ftp://ftp.slackware.com/pub/slackware/slackware-12.0/patches/packages/vim-7.1.330-i486-1_slack12.0.tgz
ftp://ftp.slackware.com/pub/slackware/slackware-12.0/patches/packages/vim-gvim-7.1.330-i486-1_slack12.0.tgz

Updated packages for Slackware 12.1:
ftp://ftp.slackware.com/pub/slackware/slackware-12.1/patches/packages/vim-7.1.330-i486-1_slack12.1.tgz
ftp://ftp.slackware.com/pub/slackware/slackware-12.1/patches/packages/vim-gvim-7.1.330-i486-1_slack12.1.tgz

Updated packages for Slackware -current:


MD5 signatures:
+-------------+

Slackware 11.0 packages:
64e048da0cb73ac3f9c88da8e6936dba  vim-7.1.330-i486-1_slack11.0.tgz
768f50ec4d6ade1a2a7e48abb74a349f  vim-gvim-7.1.330-i486-1_slack11.0.tgz

Slackware 12.0 packages:
9217c35b78117440771dc969e3e01cb8  vim-7.1.330-i486-1_slack12.0.tgz
2b023a1d7b6bd33258ba86d3a71ce21a  vim-gvim-7.1.330-i486-1_slack12.0.tgz

Slackware 12.1 packages:
0ca3022524333f2399463dc838c7be69  vim-7.1.330-i486-1_slack12.1.tgz
2cc80e4171409a6cc11de63d5fef9814  vim-gvim-7.1.330-i486-1_slack12.1.tgz

Slackware -current packages:
52fa9f16856191656e02d1b3cb2c9a21  vim-7.1.330-i486-1.tgz
8579e841c779af8916299cc69c0bf663  vim-gvim-7.1.330-i486-1.tgz


Installation instructions:
+------------------------+

Upgrade the packages as root:
# upgradepkg vim-7.1.330-i486-1_slack12.1.tgz vim-gvim-7.1.330-i486-1_slack12.1.tgz


+-----+

Slackware: 2008-210-10: vim Security Update

July 29, 2008
New vim packages are available for Slackware 11.0, 12.0, 12.1, and -current to fix security issues

Summary

Here are the details from the Slackware 12.1 ChangeLog: patches/packages/vim-7.1.330-i486-1_slack12.1.tgz: Upgraded to vim-7.1.330. This fixes several security issues related to the automatic processing of untrusted files. For more information, see: (* Security fix *) patches/packages/vim-gvim-7.1.330-i486-1_slack12.1.tgz: Upgraded to vim-gvim-7.1.330. See "vim" above for details. (* Security fix *)

Where Find New Packages

HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com.
Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating additional FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated packages for Slackware 11.0: ftp://ftp.slackware.com/pub/slackware/slackware-11.0/patches/packages/vim-7.1.330-i486-1_slack11.0.tgz ftp://ftp.slackware.com/pub/slackware/slackware-11.0/patches/packages/vim-gvim-7.1.330-i486-1_slack11.0.tgz
Updated packages for Slackware 12.0: ftp://ftp.slackware.com/pub/slackware/slackware-12.0/patches/packages/vim-7.1.330-i486-1_slack12.0.tgz ftp://ftp.slackware.com/pub/slackware/slackware-12.0/patches/packages/vim-gvim-7.1.330-i486-1_slack12.0.tgz
Updated packages for Slackware 12.1: ftp://ftp.slackware.com/pub/slackware/slackware-12.1/patches/packages/vim-7.1.330-i486-1_slack12.1.tgz ftp://ftp.slackware.com/pub/slackware/slackware-12.1/patches/packages/vim-gvim-7.1.330-i486-1_slack12.1.tgz
Updated packages for Slackware -current:

MD5 Signatures

Slackware 11.0 packages: 64e048da0cb73ac3f9c88da8e6936dba vim-7.1.330-i486-1_slack11.0.tgz 768f50ec4d6ade1a2a7e48abb74a349f vim-gvim-7.1.330-i486-1_slack11.0.tgz
Slackware 12.0 packages: 9217c35b78117440771dc969e3e01cb8 vim-7.1.330-i486-1_slack12.0.tgz 2b023a1d7b6bd33258ba86d3a71ce21a vim-gvim-7.1.330-i486-1_slack12.0.tgz
Slackware 12.1 packages: 0ca3022524333f2399463dc838c7be69 vim-7.1.330-i486-1_slack12.1.tgz 2cc80e4171409a6cc11de63d5fef9814 vim-gvim-7.1.330-i486-1_slack12.1.tgz
Slackware -current packages: 52fa9f16856191656e02d1b3cb2c9a21 vim-7.1.330-i486-1.tgz 8579e841c779af8916299cc69c0bf663 vim-gvim-7.1.330-i486-1.tgz

Severity
[slackware-security] vim (SSA:2008-210-10)
New vim packages are available for Slackware 11.0, 12.0, 12.1, and -current to fix security issues.
More details about this issue may be found here:

Installation Instructions

Installation instructions: Upgrade the packages as root: # upgradepkg vim-7.1.330-i486-1_slack12.1.tgz vim-gvim-7.1.330-i486-1_slack12.1.tgz

Related News