Oval Definition:oval:com.redhat.rhsa:def:20220894
Revision Date:2022-03-15Version:638
Title:RHSA-2022:0894: vim security update (Moderate)
Description:Vim (Vi IMproved) is an updated and improved version of the vi editor.

Security Fix(es):

  • vim: Heap-based buffer overflow in block_insert() in src/ops.c (CVE-2022-0261)

  • vim: Heap-based buffer overflow in utf_head_off() in mbyte.c (CVE-2022-0318)

  • vim: Heap-based buffer overflow in init_ccline() in ex_getln.c (CVE-2022-0359)

  • vim: Illegal memory access when copying lines in visual mode leads to heap buffer overflow (CVE-2022-0361)

  • vim: Heap-based buffer overflow in getexmodeline() in ex_getln.c (CVE-2022-0392)

  • vim: Use after free in src/ex_cmds.c (CVE-2022-0413)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2022-0261
    CVE-2022-0318
    CVE-2022-0359
    CVE-2022-0361
    CVE-2022-0392
    CVE-2022-0413
    RHSA-2022:0894
    Platform(s):Red Hat Enterprise Linux 8
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 8 is installed
  • OR Red Hat CoreOS 4 is installed
  • AND
  • vim-X11 is earlier than 2:8.0.1763-16.el8_5.12
  • AND vim-X11 is signed with Red Hat redhatrelease2 key
  • vim-common is earlier than 2:8.0.1763-16.el8_5.12
  • AND vim-common is signed with Red Hat redhatrelease2 key
  • vim-enhanced is earlier than 2:8.0.1763-16.el8_5.12
  • AND vim-enhanced is signed with Red Hat redhatrelease2 key
  • vim-filesystem is earlier than 2:8.0.1763-16.el8_5.12
  • AND vim-filesystem is signed with Red Hat redhatrelease2 key
  • vim-minimal is earlier than 2:8.0.1763-16.el8_5.12
  • AND vim-minimal is signed with Red Hat redhatrelease2 key
  • BACK