vim-8.0.1763-16.el8
エラータID: AXSA:2021-2642:01
Release date:
Sunday, December 12, 2021 - 06:02
Subject:
vim-8.0.1763-16.el8
Affected Channels:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
Vim (Vi IMproved) is an updated and improved version of the vi editor.
Security Fix(es):
* vim: heap-based buffer overflow in utf_ptr2char() in mbyte.c (CVE-2021-3778)
* vim: use-after-free in nv_replace() in normal.c (CVE-2021-3796)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2021-3778
vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-3796
vim is vulnerable to Use After Free
Solution:
Update packages.
CVEs:
Additional Info:
N/A
Download:
SRPMS
- vim-8.0.1763-16.el8.src.rpm
MD5: 27c52ef53263f78fae4351e915f7f126
SHA-256: 9582c5c1476515649a8e6f4d76b8dacca68991e121358667f849d956770f8aa1
Size: 10.69 MB
Asianux Server 8 for x86_64
- vim-X11-8.0.1763-16.el8.x86_64.rpm
MD5: 1c0988071f8a333614f25b9bff1ba165
SHA-256: 0d4fa9722f8d58640d41ea844da23b6d9ea161186e76f79684663a1b7a2cb7bb
Size: 1.50 MB - vim-common-8.0.1763-16.el8.x86_64.rpm
MD5: 23eac0e2195853ba8eb1d688d664e17f
SHA-256: a0a770d41078d2e3c658a2b64102d8e7601970e89839c8023c22ba0ec8b79ae5
Size: 6.34 MB - vim-enhanced-8.0.1763-16.el8.x86_64.rpm
MD5: 0e64603cb2bbf83efb9e467eca646625
SHA-256: 4bd0a018483cd18be5a3efa71c465fa6bb03df94d1644afe33c9f097a86c0d9a
Size: 1.36 MB - vim-filesystem-8.0.1763-16.el8.noarch.rpm
MD5: 684ab3658900d73c181b665af70a75ed
SHA-256: 44bfc5aaae13f64a7ccb8c6f4cce47ad9f731bea0717a7d0ef768686e9d78cd9
Size: 47.57 kB - vim-minimal-8.0.1763-16.el8.x86_64.rpm
MD5: 5cab45b67ca1c530c190816621f6f690
SHA-256: 26c30bdf7b400311bf8d9ff34a26bf02231b3d65c0bcf65d89a5274df44f08cb
Size: 571.91 kB