Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
89

Fedora 34: FEDORA-2022-48b86d586f Critical: vim Buffer Overflow Issues

Security fix for CVE-2021-46059, CVE-2022-0158, CVE-2022-0156 ---- Security fix for CVE-2021-4136, CVE-2021-4166, CVE-2021-4173, CVE-2021-4186, CVE-2021-4192, CVE-2021-4193. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-48b86d586f 2022-01-24 01:03:51.092562 --------------------------------------------------------------------------------Name : vim Product : Fedora 34 Version : 8.2.4068 Release : 1.fc34 URL : https://www.vim.org/ Summary : The VIM editor Description : VIM (VIsual editor iMproved) is an updated and improved version of the vi editor. Vi was the first real screen-based editor for UNIX, and is still very popular. VIM improves on vi by adding new features: multiple windows, multi-level undo, block highlighting and more. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2021-46059, CVE-2022-0158, CVE-2022-0156 ---- Security fix for CVE-2021-4136, CVE-2021-4166, CVE-2021-4173, CVE-2021-4186, CVE-2021-4192, CVE-2021-4193 --------------------------------------------------------------------------------ChangeLog: * Wed Jan 12 2022 Zdenek Dohnal - 2:8.2.4068-1 - patchlevel 4068 * Mon Jan 10 2022 Zdenek Dohnal - 2:8.2.4051-1 - patchlevel 4051 * Fri Jan 7 2022 Malcolm Inglis - 2:8.2.4006-2 - add 'gui' build condition for vim-X11 * Wed Jan 5 2022 Zdenek Dohnal - 2:8.2.4006-1 - patchlevel 4006 * Wed Dec 15 2021 Zdenek Dohnal - 2:8.2.3811-1 - patchlevel 3811 --------------------------------------------------------------------------------References: [ 1 ] Bug #2034720 - CVE-2021-4136 vim: heap-based buffer overflow in eval_lambda() in src/eval.c https://bugzilla.redhat.com/show_bug.cgi?id=2034720 [ 2 ] Bug #2035928 - CVE-2021-4166 vim: out-of-bounds read in do_arg_all() in src/arglist.c https://bugzilla.redhat.com/show_bug.cgi?id=2035928 [ 3 ] Bug #2035930 -CVE-2021-4173 vim: use-after-free with nested :def function https://bugzilla.redhat.com/show_bug.cgi?id=2035930 [ 4 ] Bug #2036129 - CVE-2021-4187 vim: use-after-free vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=2036129 [ 5 ] Bug #2039843 - CVE-2022-0156 vim: use-after-free while treating allocated lines in user functions https://bugzilla.redhat.com/show_bug.cgi?id=2039843 [ 6 ] Bug #2039846 - CVE-2022-0158 vim: heap-based read buffer overflow in compile_get_env() https://bugzilla.redhat.com/show_bug.cgi?id=2039846 [ 7 ] Bug #2039850 - CVE-2021-46059 vim: NULL pointer dereference vulnerability via the vim_regexec_multi function at regexp.c https://bugzilla.redhat.com/show_bug.cgi?id=2039850 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-48b86d586f' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Fedora 34's latest patch resolves significant security flaws in nano, boosting both editor protection and operational reliability.. Fedora 34,PatchingSecurity,Software Fix,Open Source Software. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 23, 2022 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here