CLSA-2022-1645465475
Dashboard / Vulnerabilities / CLSA-2022-1645465475
CLSA-2022-1645465475
Summary: Fix CVE(s): CVE-2022-0408, CVE-2022-0417, CVE-2022-0443, CVE-2022-0413
Details: * SECURITY UPDATE: Stack corruption when looking for spell suggestions - debian/patches/CVE-2022-0408.patch: Prevent the depth increased too much, add a five second time limit to finding suggestions - CVE-2022-0408 * SECURITY UPDATE: Using freed memory when substitute with function call - debian/patches/CVE-2022-0413.patch: Make a copy of the substituted text - CVE-2022-0413 * SECURITY UPDATE: ':retab 0' may cause illegal memory access - debian/patches/CVE-2022-0417.patch: Limit the value of 'tabstop' to 10000 - CVE-2022-0417 * SECURITY UPDATE: Using freed memory with ':lopen' and ':bwipe' - debian/patches/CVE-2022-0443.patch: Do not use a wiped out buffer - CVE-2022-0443
Affected packages
Package
Name: vim
Purl: pkg:deb/tuxcare/vim?distro=ubuntu-16.04
Affected ranges
Type: ECOSYSTEM
Events:
