Vulnerability CVE-2023-5535: Information
Description
Use After Free in GitHub repository vim/vim prior to v9.0.2010.
Severity: HIGH (7.8) Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Fixed packages
Package name | Branch | Fixed in version | Version from repository | Errata ID | Task # | State |
---|---|---|---|---|---|---|
vim | sisyphus | 9.0.2081-alt1 | 9.1.0050-alt3 | ALT-PU-2023-6840-2 | 333294 | Fixed |
vim | sisyphus_e2k | 9.0.2081-alt1 | 9.1.0050-alt3 | ALT-PU-2023-6936-1 | - | Fixed |
vim | sisyphus_riscv64 | 9.0.2081-alt1 | 9.1.0050-alt3 | ALT-PU-2023-6888-1 | - | Fixed |
vim | p10 | 9.0.2081-alt1 | 9.1.0050-alt3 | ALT-PU-2023-7047-2 | 333906 | Fixed |
vim | p10_e2k | 9.0.2081-alt1 | 9.1.0050-alt3 | ALT-PU-2023-7401-1 | - | Fixed |
vim | c10f1 | 9.0.2081-alt1 | 9.1.0050-alt2 | ALT-PU-2023-7253-2 | 334454 | Fixed |
vim | c9f2 | 9.0.2081-alt1 | 9.1.0050-alt2 | ALT-PU-2023-7025-3 | 333862 | Fixed |
vim | p11 | 9.0.2081-alt1 | 9.1.0050-alt3 | ALT-PU-2023-6840-2 | 333294 | Fixed |
References to Advisories, Solutions, and Tools
Hyperlink | Resource |
---|---|
https://github.com/vim/vim/commit/41e6f7d6ba67b61d911f9b1d76325cd79224753d |
|
https://huntr.dev/bounties/2c2d85a7-1171-4014-bf7f-a2451745861f |
|
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VDDWD25AZIHBAA44HQT75OWLQ5UMDKU3/ |
|
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VGTVLUV7UCXXCZAIQIUCLG6JXAVYT3HE/ |
|
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XPT7NMYJRLBPIALGSE24UWTY6F774GZW/ |
|