[ubuntu/oracular-proposed] vim 2:9.1.0496-1ubuntu6 (Accepted)

Vyom Yadav vyom.yadav at canonical.com
Wed Oct 2 09:00:48 UTC 2024


vim (2:9.1.0496-1ubuntu6) oracular; urgency=medium

  * SECURITY UPDATE: heap buffer overflow
    - debian/patches/CVE-2024-43802.patch: check buflen before advancing
      offset. Add src/testdir/crash/heap_overflow3 to include-binaries.
    - debian/patches/CVE-2024-45306.patch: set cursor to the last character
      in a line, if it would otherwise point to beyond the line.
    - CVE-2024-43802
    - CVE-2024-45306

Date: Thu, 26 Sep 2024 13:15:17 +0530
Changed-By: Vyom Yadav <vyom.yadav at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Alex Murray <alex.murray at canonical.com>
https://launchpad.net/ubuntu/+source/vim/2:9.1.0496-1ubuntu6
-------------- next part --------------
Format: 1.8
Date: Thu, 26 Sep 2024 13:15:17 +0530
Source: vim
Built-For-Profiles: noudeb
Architecture: source
Version: 2:9.1.0496-1ubuntu6
Distribution: oracular
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Vyom Yadav <vyom.yadav at canonical.com>
Changes:
 vim (2:9.1.0496-1ubuntu6) oracular; urgency=medium
 .
   * SECURITY UPDATE: heap buffer overflow
     - debian/patches/CVE-2024-43802.patch: check buflen before advancing
       offset. Add src/testdir/crash/heap_overflow3 to include-binaries.
     - debian/patches/CVE-2024-45306.patch: set cursor to the last character
       in a line, if it would otherwise point to beyond the line.
     - CVE-2024-43802
     - CVE-2024-45306
Checksums-Sha1:
 1132cefc3dab2cfb2fbd0582a1d70096a95937da 2729 vim_9.1.0496-1ubuntu6.dsc
 b8b46bc8a58ea66dd13e1619d75a9cec9f7c6134 209412 vim_9.1.0496-1ubuntu6.debian.tar.xz
 821cc6aea193e05d0e8ab719d9852835b62fa64a 17457 vim_9.1.0496-1ubuntu6_source.buildinfo
Checksums-Sha256:
 901d0117446eb62b1c2ffc320957c06478b30b7000583ec2a26167d55b519062 2729 vim_9.1.0496-1ubuntu6.dsc
 99c4a206a0851b1229e6028f036aefb58cb4e658f1b73c79b12ac133f9f92ecf 209412 vim_9.1.0496-1ubuntu6.debian.tar.xz
 38d1c5107eeca6712ebbd4ea2365def0cf3d0c6cc65c85ef29875ade6744fcbc 17457 vim_9.1.0496-1ubuntu6_source.buildinfo
Files:
 5903d2e82ca4998263d6f30ef426de2f 2729 editors optional vim_9.1.0496-1ubuntu6.dsc
 931aef84a7c932a1fc92c0d6c3c65db7 209412 editors optional vim_9.1.0496-1ubuntu6.debian.tar.xz
 7cf0a5d628e6c9dd319cae1b79062a62 17457 editors optional vim_9.1.0496-1ubuntu6_source.buildinfo
Original-Maintainer: Debian Vim Maintainers <team+vim at tracker.debian.org>


More information about the oracular-changes mailing list