Advisories ยป MGASA-2023-0075

Updated vim packages fix security vulnerability

Publication date: 01 Mar 2023
Modification date: 01 Mar 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-47024 , CVE-2023-0433

Description

A null pointer dereference issue was discovered in function
gui_x11_create_blank_mouse in gui_x11.c in vim 8.1.2269 thru 9.0.0339
allows attackers to cause denial of service or other unspecified impacts.
(CVE-2022-47024)

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225.
(CVE-2023-0433)
                

References

SRPMS

8/core