ELSA-2022-0894

ELSA-2022-0894 - vim security update

Type:SECURITY
Impact:MODERATE
Release Date:2022-03-16

Description


[8.0.1763-16.0.1]
- - Remove upstream references [Orabug: 31197557]

[2:8.0.1763-16.12]
- CVE-2022-0361 vim: Heap-based Buffer Overflow in GitHub repository

[2:8.0.1763-16.11]
- CVE-2022-0413 vim: use after free in src/ex_cmds.c
- Fix specfile problems
- Resolves: rhbz#2048525

[2:8.0.1763-16.10]
- CVE-2022-0413 vim: use after free in src/ex_cmds.c
- Resolves: rhbz#2048525

[2:8.0.1763-16.9]
- CVE-2022-0392 vim: heap-based buffer overflow in getexmodeline() in ex_getln.c
- Improve fix
- Resolves: rhbz#2049403

[2:8.0.1763-16.8]
- CVE-2022-0392 vim: heap-based buffer overflow in getexmodeline() in ex_getln.c
- Resolves: rhbz#2049403

[2:8.0.1763-16.7]
- CVE-2022-0359 vim: heap-based buffer overflow in init_ccline() in ex_getln.c

[2:8.0.1763-16.6]
- fix test suite after fix for CVE-2022-0318

[2:8.0.1763-16.5]
- CVE-2022-0261 vim: Heap-based Buffer Overflow in block_insert() in src/ops.c
- CVE-2022-0318 vim: heap-based buffer overflow in utf_head_off() in mbyte.c


Related CVEs


CVE-2022-0392
CVE-2022-0359
CVE-2022-0361
CVE-2022-0413
CVE-2022-0318
CVE-2022-0261

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) vim-8.0.1763-16.0.1.el8_5.12.src.rpme7d7651f875ad168aef90af8d51a3f9ecfcad07d1f0f0b6730bd8afa876c7e15-ol8_aarch64_appstream
vim-8.0.1763-16.0.1.el8_5.12.src.rpme7d7651f875ad168aef90af8d51a3f9ecfcad07d1f0f0b6730bd8afa876c7e15-ol8_aarch64_baseos_latest
vim-8.0.1763-16.0.1.el8_5.12.src.rpme7d7651f875ad168aef90af8d51a3f9ecfcad07d1f0f0b6730bd8afa876c7e15-ol8_aarch64_u5_baseos_patch
vim-X11-8.0.1763-16.0.1.el8_5.12.aarch64.rpm2de7d7c17bac8b91ffae2c79de4225ad08a5e2163043b73b0765d0e15eae48bd-ol8_aarch64_appstream
vim-common-8.0.1763-16.0.1.el8_5.12.aarch64.rpmaf428d11e97a20fe8c3c927790ade3c97c413dd1c9fc66793a8546d6ed018d52-ol8_aarch64_appstream
vim-enhanced-8.0.1763-16.0.1.el8_5.12.aarch64.rpme06a756a6f48ddefb8125234e795b9b0cbf0027d9c9008405526bb239bd7a64e-ol8_aarch64_appstream
vim-filesystem-8.0.1763-16.0.1.el8_5.12.noarch.rpm93b6089a501e7990aeae83beb9efa522b69bc565f1e29298a979980b641d0506-ol8_aarch64_appstream
vim-minimal-8.0.1763-16.0.1.el8_5.12.aarch64.rpm8412eace83d78a77a4d48898f55e3c61aef92d5743fbed84286f46965bca9aa0-ol8_aarch64_baseos_latest
vim-minimal-8.0.1763-16.0.1.el8_5.12.aarch64.rpm8412eace83d78a77a4d48898f55e3c61aef92d5743fbed84286f46965bca9aa0-ol8_aarch64_u5_baseos_patch
Oracle Linux 8 (x86_64) vim-8.0.1763-16.0.1.el8_5.12.src.rpme7d7651f875ad168aef90af8d51a3f9ecfcad07d1f0f0b6730bd8afa876c7e15-ol8_x86_64_appstream
vim-8.0.1763-16.0.1.el8_5.12.src.rpme7d7651f875ad168aef90af8d51a3f9ecfcad07d1f0f0b6730bd8afa876c7e15-ol8_x86_64_baseos_latest
vim-8.0.1763-16.0.1.el8_5.12.src.rpme7d7651f875ad168aef90af8d51a3f9ecfcad07d1f0f0b6730bd8afa876c7e15-ol8_x86_64_u5_baseos_patch
vim-X11-8.0.1763-16.0.1.el8_5.12.x86_64.rpme5e719ea1ccb48bf04b2ba8922e09f8a881e61e557a5e686736785f0c6e72838-ol8_x86_64_appstream
vim-common-8.0.1763-16.0.1.el8_5.12.x86_64.rpm9f7680768dfe40f9c15dea88f6e12c7be63de415e875cb295fe79eb36aa93a13-ol8_x86_64_appstream
vim-enhanced-8.0.1763-16.0.1.el8_5.12.x86_64.rpmb2f64a7ee4741815315a97bb81ddb173b1bcc3d6fa9db320c8eadea950209eff-ol8_x86_64_appstream
vim-filesystem-8.0.1763-16.0.1.el8_5.12.noarch.rpm93b6089a501e7990aeae83beb9efa522b69bc565f1e29298a979980b641d0506-ol8_x86_64_appstream
vim-minimal-8.0.1763-16.0.1.el8_5.12.x86_64.rpm0cea5dcd5881ad5fcfd74bf67579d08083ffc69ea85ff88fec4a2a5a3e132fe2-ol8_x86_64_baseos_latest
vim-minimal-8.0.1763-16.0.1.el8_5.12.x86_64.rpm0cea5dcd5881ad5fcfd74bf67579d08083ffc69ea85ff88fec4a2a5a3e132fe2-ol8_x86_64_u5_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete