UbuntuUpdates.org

Package "vim-gnome"

Name: vim-gnome

Description:

Vi IMproved - enhanced vi editor - with GNOME2 GUI

Latest version: 2:7.4.052-1ubuntu3.1
Release: trusty (14.04)
Level: security
Repository: main
Head package: vim
Homepage: http://www.vim.org/

Links


Download "vim-gnome"


Other versions of "vim-gnome" in Trusty

Repository Area Version
base main 2:7.4.052-1ubuntu3
updates main 2:7.4.052-1ubuntu3.1

Changelog

Version: 2:7.4.052-1ubuntu3.1 2016-11-29 01:07:09 UTC

  vim (2:7.4.052-1ubuntu3.1) trusty-security; urgency=medium

  * SECURITY UPDATE: arbitrary shell execution via modelines
    - debian/patches/upstream/CVE-2016-1248.patch: Only allow valid
      characters in 'filetype', 'syntax' and 'keymap'. Tests adapted
      back to vim 7.3 by James McCoy of Debian, thanks! Patch is also
      updated to add the tests to the set that are run during the build.
    - CVE-2016-1248

 -- Steve Beattie <email address hidden> Wed, 23 Nov 2016 18:06:44 -0800

CVE-2016-1248 vim before patch 8.0.0056 does not properly validate values for the 'filetype', 'syntax' and 'keymap' options, which may result in the execution of a



About   -   Send Feedback to @ubuntu_updates