[ubuntu/mantic-proposed] vim 2:9.0.1378-2ubuntu2 (Accepted)

Camila Camargo de Matos camila.camargodematos at canonical.com
Tue Jun 6 15:05:15 UTC 2023


vim (2:9.0.1378-2ubuntu2) mantic; urgency=medium

  * SECURITY UPDATE: NULL pointer dereference when processing register content
    - debian/patches/CVE-2023-2609.patch: check "y_array" is not NULL.
    - CVE-2023-2609
  * SECURITY UPDATE: integer overflow and excessive memory consumption when
    allocating memory for tilde processing in pattern
    - debian/patches/CVE-2023-2610.patch: limit the text length to MAXCOL.
    - CVE-2023-2610

Date: Wed, 24 May 2023 11:10:23 -0300
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/vim/2:9.0.1378-2ubuntu2
-------------- next part --------------
Format: 1.8
Date: Wed, 24 May 2023 11:10:23 -0300
Source: vim
Built-For-Profiles: noudeb
Architecture: source
Version: 2:9.0.1378-2ubuntu2
Distribution: mantic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
Changes:
 vim (2:9.0.1378-2ubuntu2) mantic; urgency=medium
 .
   * SECURITY UPDATE: NULL pointer dereference when processing register content
     - debian/patches/CVE-2023-2609.patch: check "y_array" is not NULL.
     - CVE-2023-2609
   * SECURITY UPDATE: integer overflow and excessive memory consumption when
     allocating memory for tilde processing in pattern
     - debian/patches/CVE-2023-2610.patch: limit the text length to MAXCOL.
     - CVE-2023-2610
Checksums-Sha1:
 144db76f8ec34e4b7b0ff76612a744ec846e5e38 3012 vim_9.0.1378-2ubuntu2.dsc
 177f17fdf5a870ac10ff41e4462d786745dbc9fe 199888 vim_9.0.1378-2ubuntu2.debian.tar.xz
 cea152d6207af83ee3bc8d9a4a9c111d35bb4240 16636 vim_9.0.1378-2ubuntu2_source.buildinfo
Checksums-Sha256:
 32f5c6631510a1e6c8784b022d9ebb787b66faacf14b6d66e4809450f528537d 3012 vim_9.0.1378-2ubuntu2.dsc
 70e3d4dba822ebca725f122b4e56461f0ecfcc6185edaec87ab75ac56e669c0e 199888 vim_9.0.1378-2ubuntu2.debian.tar.xz
 48ad43799c1f67f680f1413326bd879e4783252805a6d0a10cd328f8e95f8692 16636 vim_9.0.1378-2ubuntu2_source.buildinfo
Files:
 f43cae5df7413893b1d78e684853c9c1 3012 editors optional vim_9.0.1378-2ubuntu2.dsc
 37771d3bbb15672bf1f94a779abcd1e7 199888 editors optional vim_9.0.1378-2ubuntu2.debian.tar.xz
 e97910c9ed565eff173ca37520fe1ad2 16636 editors optional vim_9.0.1378-2ubuntu2_source.buildinfo
Original-Maintainer: Debian Vim Maintainers <team+vim at tracker.debian.org>


More information about the mantic-changes mailing list