Release Info

Advisory: CLSA-2022:1654804099

OS: Ubuntu 16.04 ELS

Public date: 2022-06-09 00:00:00

Project: vim

Version: 3:7.4.1689-3ubuntu1.5+tuxcare.els16

Errata link: https://errata.tuxcare.com/els_os/ubuntu16.04els/CLSA-2022-1654804099.html

Changelog

* SECURITY UPDATE: ml_get() error when exchanging windows in Visual mode - debian/patches/CVE-2022-0319.patch: Correct end of Visual area when entering another buffer - CVE-2022-0319 * SECURITY UPDATE: Cursor may be in an invalid position after text formatting - debian/patches/CVE-2022-1851.patch: Correct the cursor position after formatting - CVE-2022-1851 * SECURITY UPDATE: Access before start of text with a put command - debian/patches/CVE-2022-1886.patch: Check the length is more than zero - CVE-2022-1886 * SECURITY UPDATE: Using freed memory with "]d". - debian/patches/CVE-2022-1898: Copy the pattern before searching - CVE-2022-1898

Update

Update command: apt-get update apt-get --only-upgrade install vim*

Packages list

vim_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-athena_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-athena-py2_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-common_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-doc_7.4.1689-3ubuntu1.5+tuxcare.els16_all.deb vim-gnome_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-gnome-py2_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-gtk_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-gtk-py2_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-gtk3_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-gtk3-py2_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-gui-common_7.4.1689-3ubuntu1.5+tuxcare.els16_all.deb vim-nox_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-nox-py2_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb vim-runtime_7.4.1689-3ubuntu1.5+tuxcare.els16_all.deb vim-tiny_7.4.1689-3ubuntu1.5+tuxcare.els16_amd64.deb

CVEs

CVE-2022-0319
CVE-2022-1898
CVE-2022-1851