Debian-LTS alert DLA-822-1 (vim)
| From: | James McCoy <jamessan@debian.org> | |
| To: | debian-lts-announce@lists.debian.org | |
| Subject: | [SECURITY] [DLA 822-1] vim security update | |
| Date: | Mon, 13 Feb 2017 11:05:39 -0500 | |
| Message-ID: | <20170213160539.7wh6kgq7inm4wcbx@freya.jamessan.com> |
Package : vim Version : 2:7.3.547-7+deb7u2 CVE ID : CVE-2017-5953 Debian Bug : #854969 A vulnerability has been discovered in Vim where a malformed spell file could cause an integer overflow which is used as the size for memory allocation, resulting in a subsequent buffer overflow. For Debian 7 "Wheezy", these problems have been fixed in version 2:7.3.547-7+deb7u2. We recommend that you upgrade your vim packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS Cheers, -- James GPG Key: 4096R/91BF BF4D 6956 BD5D F7B7 2D23 DFE6 91AE 331B A3DB
