USN-6195-1

Source
https://ubuntu.com/security/notices/USN-6195-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/USN-6195-1.json
Related
Published
2023-07-03T00:47:59.905885Z
Modified
2023-07-03T00:47:59.905885Z
Details

It was discovered that Vim contained an out-of-bounds read vulnerability. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2022-0128)

It was discovered that Vim did not properly manage memory when freeing allocated memory. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2022-0156)

It was discovered that Vim contained a heap-based buffer overflow vulnerability. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2022-0158)

It was discovered that Vim did not properly manage memory when recording and using select mode. An attacker could possibly use this issue to cause a denial of service. (CVE-2022-0393)

It was discovered that Vim incorrectly handled certain memory operations during a visual block yank. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2022-0407)

It was discovered that Vim contained a NULL pointer dereference vulnerability when switching tabpages. An attacker could possible use this issue to cause a denial of service. (CVE-2022-0696)

References

Affected packages

Ubuntu:22.04:LTS / vim

Package

Name
vim

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
2:8.2.3995-1ubuntu2.9

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "vim-doc": "2:8.2.3995-1ubuntu2.9",
            "vim-athena": "2:8.2.3995-1ubuntu2.9",
            "vim-gui-common": "2:8.2.3995-1ubuntu2.9",
            "vim": "2:8.2.3995-1ubuntu2.9",
            "vim-tiny": "2:8.2.3995-1ubuntu2.9",
            "vim-common": "2:8.2.3995-1ubuntu2.9",
            "vim-runtime": "2:8.2.3995-1ubuntu2.9",
            "vim-gtk3": "2:8.2.3995-1ubuntu2.9",
            "vim-gtk": "2:8.2.3995-1ubuntu2.9",
            "xxd": "2:8.2.3995-1ubuntu2.9",
            "vim-nox": "2:8.2.3995-1ubuntu2.9"
        }
    ]
}