[Git][security-tracker-team/security-tracker][master] Add CVE-2022-0158/vim

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jan 10 20:32:08 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d673fb4b by Salvatore Bonaccorso at 2022-01-10T21:31:26+01:00
Add CVE-2022-0158/vim

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -523,7 +523,11 @@ CVE-2021-23154 (In Lens prior to 5.3.4, custom helm chart configuration creates
 CVE-2022-0159
 	RESERVED
 CVE-2022-0158 (vim is vulnerable to Heap-based Buffer Overflow ...)
-	TODO: check
+	- vim <unfixed>
+	[bullseye] - vim <no-dsa> (Minor issue)
+	[buster] - vim <no-dsa> (Minor issue)
+	NOTE: https://huntr.dev/bounties/ac5d7005-07c6-4a0a-b251-ba9cdbf6738b/
+	NOTE: https://github.com/vim/vim/commit/5f25c3855071bd7e26255c68bf458b1b5cf92f39 (v8.2.4049)
 CVE-2022-0157 (phoronix-test-suite is vulnerable to Improper Neutralization of Input  ...)
 	- phoronix-test-suite <removed>
 CVE-2022-22848



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d673fb4b3d6034f8d851bf5310bd38429d99e118

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d673fb4b3d6034f8d851bf5310bd38429d99e118
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220110/626897f2/attachment.htm>


More information about the debian-security-tracker-commits mailing list