[Git][security-tracker-team/security-tracker][master] Add CVE-2021-46059/vim

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jan 8 08:34:31 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4a19fd2f by Salvatore Bonaccorso at 2022-01-08T09:34:01+01:00
Add CVE-2021-46059/vim

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1512,7 +1512,11 @@ CVE-2021-46060 (A NULL Pointer Dereference vulnerability exists in GNU inetutils
 	NOTE: https://lists.gnu.org/archive/html/bug-inetutils/2021-12/msg00017.html
 	TODO: check details
 CVE-2021-46059 (A Pointer Dereference vulnerability exists in Vim 8.2.3883 via the vim ...)
-	TODO: check
+	- vim 2:8.2.3995-1
+	[bullseye] - vim <no-dsa> (Minor issue)
+	[buster] - vim <no-dsa> (Minor isue)
+	NOTE: https://huntr.dev/bounties/a9b015e2-59e3-4ed9-8812-d9021e40b8f2/
+	NOTE: Fixed by: https://github.com/vim/vim/commit/5937c7505f444dd896f336fa0119a93a55ebe9a2 (v8.2.3883)
 CVE-2021-46058 (AHheap-based Buffer Overflow vulnerabiity exists in GNU inetutils 2.2  ...)
 	- inetutils <unfixed>
 	NOTE: https://lists.gnu.org/archive/html/bug-inetutils/2021-12/msg00016.html



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4a19fd2fc4fea867a09dfcc41976cb6359d4e075

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4a19fd2fc4fea867a09dfcc41976cb6359d4e075
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220108/22f83e7e/attachment.htm>


More information about the debian-security-tracker-commits mailing list