CLSA-2021-1639686040
Dashboard / Vulnerabilities / CLSA-2021-1639686040
CLSA-2021-1639686040
Summary: Fix CVE(s): CVE-2021-3984, CVE-2021-3973, CVE-2021-3974, CVE-2021-4019, CVE-2021-4069
Details: * SECURITY UPDATE: Using freed memory with regexp using a mark - debian/patches/CVE-2021-3974.patch: Get the line again after getting the mark position - CVE-2021-3974 * SECURITY UPDATE: Illegal memory access when C-indenting - debian/patches/CVE-2021-3984.patch: Also set the cursor column - CVE-2021-3984 * SECURITY UPDATE: Crash when using CTRL-W f without finding a file name - debian/patches/CVE-2021-3973.patch: Bail out when the file name length is zero - CVE-2021-3973 * SECURITY UPDATE: Buffer overflow with long help argument - debian/patches/CVE-2021-4019.patch: Use snprintf - CVE-2021-4019 * SECURITY UPDATE: Using freed memory in open command - debian/patches/CVE-2021-4069.patch: Make a copy of the current line - CVE-2021-4069
Affected packages
Package
Name: vim
Purl: pkg:deb/tuxcare/vim?distro=ubuntu-16.04
Affected ranges
Type: ECOSYSTEM
Events:
