ELA-867-1 vim security update

multiple vulnerabilities

2023-06-12
Packagevim
Version2:7.4.488-7+deb8u10 (jessie), 2:8.0.0197-4+deb9u10 (stretch)
Related CVEs CVE-2022-4141 CVE-2023-0054 CVE-2023-1175 CVE-2023-2610


Multiple security vulnerabilities have been discovered in vim, an enhanced vi editor. Buffer overflows and out-of-bounds reads may lead to a denial-of-service (application crash) or other unspecified impact.



For Debian 8 jessie, these problems have been fixed in version 2:7.4.488-7+deb8u10.

For Debian 9 stretch, these problems have been fixed in version 2:8.0.0197-4+deb9u10.

We recommend that you upgrade your vim packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.