Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
b8844d40 by Salvatore Bonaccorso at 2022-07-03T22:54:47+02:00
Add two new vim issues: CVE-2022-228{8,9}/vim
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -17,9 +17,13 @@ CVE-2022-34911 (An issue was discovered in MediaWiki before
1.35.7, 1.36.x and 1
CVE-2022-2290 (Cross-site Scripting (XSS) - Reflected in GitHub repository
zadam/tril ...)
TODO: check
CVE-2022-2289 (Use After Free in GitHub repository vim/vim prior to 9.0. ...)
- TODO: check
+ - vim <unfixed>
+ NOTE: https://huntr.dev/bounties/7447d2ea-db5b-4883-adf4-1eaf7deace64/
+ NOTE:
https://github.com/vim/vim/commit/c5274dd12224421f2430b30c53b881b9403d649e
(v9.0.0026)
CVE-2022-2288 (Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.
...)
- TODO: check
+ - vim <unfixed>
+ NOTE: https://huntr.dev/bounties/a71bdcb7-4e9b-4650-ab6a-fe8e3e9852ad/
+ NOTE:
https://github.com/vim/vim/commit/c6fdb15d423df22e1776844811d082322475e48a
(v9.0.0025)
CVE-2022-34910
RESERVED
CVE-2022-34909
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8844d4001bdc348dfa9d081936da848517d31e0
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8844d4001bdc348dfa9d081936da848517d31e0
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits