[Git][security-tracker-team/security-tracker][master] Add CVE-2022-0319/vim

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jan 22 15:53:58 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e76d6bbe by Salvatore Bonaccorso at 2022-01-22T16:53:43+01:00
Add CVE-2022-0319/vim

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -199,7 +199,11 @@ CVE-2022-0321
 CVE-2022-0320
 	RESERVED
 CVE-2022-0319 (Out-of-bounds Read in Conda vim prior to 8.2. ...)
-	TODO: check
+	- vim <unfixed>
+	[bullseye] - vim <no-dsa> (Minor issue)
+	[buster] - vim <no-dsa> (Minor issue)
+	NOTE: https://huntr.dev/bounties/ba622fd2-e6ef-4ad9-95b4-17f87b68755b
+	NOTE: https://github.com/vim/vim/commit/05b27615481e72e3b338bb12990fb3e0c2ecc2a9 (v8.2.4154)
 CVE-2022-0318 (Heap-based Buffer Overflow in vim/vim prior to 8.2. ...)
 	TODO: check
 CVE-2022-0317



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e76d6bbee8da33f3e7a5bc68fdfb5d5cb0c42c78

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e76d6bbee8da33f3e7a5bc68fdfb5d5cb0c42c78
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220122/594f905a/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list