[CLSA-2022:1661442764] Fixed CVEs in vim: CVE-2022-2845, CVE-2022-2849
Type:
security
Severity:
Important
Release date:
2022-08-25
Description:
- CVE-2022-2849: fix invalid memory access with for loop over NULL string - CVE-2022-2845: fix reading before the start of the line
Updated packages:
  • vim-minimal-7.4.629-5.2.el6.tuxcare.els26.x86_64.rpm
    sha:8404bf3df4a58b57c4b995ffbe6851228399ca39
  • vim-enhanced-7.4.629-5.2.el6.tuxcare.els26.x86_64.rpm
    sha:fef9c4242c7b1ed6a33a10a54451ab1828b62294
  • vim-common-7.4.629-5.2.el6.tuxcare.els26.x86_64.rpm
    sha:b30e82a37b3c2bd733797f185244fecfe5931139
  • vim-X11-7.4.629-5.2.el6.tuxcare.els26.x86_64.rpm
    sha:7e441b1ca91573f98efbb8664cc3e666f8f65bce
  • vim-filesystem-7.4.629-5.2.el6.tuxcare.els26.x86_64.rpm
    sha:5a56aa6eeb8dda9c8584cfb3f6caac144c06abf1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.