Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2022:4619-1 Moderate: Vim Buffer Overflows and Fixes

suse
Calendar Grey December 27, 2022
Dist Suse Esm H88
A patch for vim has been released that resolves 104 security issues rated as moderate, complete with comprehensive CVE citations.
An update that solves 104 vulnerabilities and has one errata is now available

Summary

This update for vim fixes the following issues: Updated to version 9.0.0814: * Fixing bsc#1192478 VUL-1: CVE-2021-3928: vim: vim is vulnerable to Stack-based Buffer Overflow * Fixing bsc#1203508 VUL-0: CVE-2022-3234: vim: Heap-based Buffer Overflow prior to 9.0.0483. * Fixing bsc#1203509 VUL-1: CVE-2022-3235: vim: Use After Free in GitHub prior to 9.0.0490. * Fixing bsc#1203820 VUL-0: CVE-2022-3324: vim: Stack-based Buffer Overflow in prior to 9.0.0598. * Fixing bsc#1204779 VUL-0: CVE-2022-3705: vim: use after free in function qf_update_buffer of the file quickfix.c * Fixing bsc#1203152 VUL-1: CVE-2022-2982: vim: use after free in qf_fill_buffer() * Fixing bsc#1203796 VUL-1: CVE-2022-3296: vim: stack out of bounds read in ex_finally() in ex_eval.c

References

#1070955 #1173256 #1174564 #1176549 #1182324

#1190533 #1190570 #1191770 #1191893 #1192167

#1192478 #1192481 #1192902 #1192903 #1192904

#1193294 #1193298 #1193466 #1193905 #1194093

#1194216 #1194217 #1194388 #1194556 #1194872

#1194885 #1195004 #1195066 #1195126 #1195202

#1195203 #1195332 #1195354 #1195356 #1196361

#1198596 #1198748 #1199331 #1199333 #1199334

#1199651 #1199655 #1199693 #1199745 #1199747

#1199936 #1200010 #1200011 #1200012 #1200270

#1200697 #1200698 #1200700 #1200701 #1200732

#1200884 #1200902 #1200903 #1200904 #1201132

#1201133 #1201134 #1201135 #1201136 #1201150

#1201151 #1201152 #1201153 #1201154 #1201155

#1201249 #1201356 #1201359 #1201363 #1201620

#1201863 #120...

Read the Full Advisory

Announcement ID: SUSE-SU-2022:4619-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here