This bug was fixed in the package vim - 1:7.0-035+1ubuntu5.2~dapper1
---------------
vim (1:7.0-035+1ubuntu5.2~dapper1) dapper-backports; urgency=low
* import the patch from vim upload 1:7.0-035+1ubuntu5.2 to edgy-security
LP: #150858
vim (1:7.0-035+1ubuntu5.2) edgy-security; urgency=low
* SECURITY UPDATE: Format string vulnerability allows user-assisted
remote attackers to execute arbitrary code.
* Added 'patches/801_CVE-2007-2953': Use puts() instead of
fprintf(). Patch from upstream, backported.
* References
CVE-2007-2953
-- Reinhard Tartler <[EMAIL PROTECTED]> Tue, 05 Feb 2008 20:57:44
+0100
** Changed in: vim (Ubuntu)
Status: Incomplete => Fix Released
--
[vim] [dapper-backports] Format string vulnerability in the helptags_one
function
https://bugs.launchpad.net/bugs/150858
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs