Release Info

Advisory: CLSA-2022:1653917554

OS: Ubuntu 16.04 ELS

Public date: 2022-05-30 00:00:00

Project: vim

Version: 3:7.4.1689-3ubuntu1.5+tuxcare.els14

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2022-1653917554.html

Changelog

* SECURITY UPDATE: Reading past end of the line when C-indenting - debian/patches/CVE-2022-1733.patch: Add extra check for NUL - CVE-2022-1733 * SECURITY UPDATE: Invalid memory access when changing text in Visual mode - debian/patches/CVE-2022-1735.patch: Check the Visual position after making a change - CVE-2022-1735

Update

Update command: apt-get update apt-get --only-upgrade install vim*

Packages list

vim_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-athena_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-athena-py2_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-common_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-doc_7.4.1689-3ubuntu1.5+tuxcare.els14_all.deb vim-gnome_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-gnome-py2_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-gtk_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-gtk-py2_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-gtk3_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-gtk3-py2_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-gui-common_7.4.1689-3ubuntu1.5+tuxcare.els14_all.deb vim-nox_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-nox-py2_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb vim-runtime_7.4.1689-3ubuntu1.5+tuxcare.els14_all.deb vim-tiny_7.4.1689-3ubuntu1.5+tuxcare.els14_amd64.deb

CVEs

CVE-2022-1735
CVE-2022-1733