Package "vim"

Name: vim


Vi IMproved - enhanced vi editor

Latest version: 2:7.4.052-1ubuntu3.1
Release: trusty (14.04)
Level: security
Repository: main
Homepage: http://www.vim.org/


Download "vim"

Other versions of "vim" in Trusty

Repository Area Version
base main 2:7.4.052-1ubuntu3
security universe 2:7.4.052-1ubuntu3.1
updates main 2:7.4.052-1ubuntu3.1
updates universe 2:7.4.052-1ubuntu3.1

Packages in group

Deleted packages are displayed in grey.


Version: 2:7.4.052-1ubuntu3.1 2016-11-29 01:07:09 UTC

  vim (2:7.4.052-1ubuntu3.1) trusty-security; urgency=medium

  * SECURITY UPDATE: arbitrary shell execution via modelines
    - debian/patches/upstream/CVE-2016-1248.patch: Only allow valid
      characters in 'filetype', 'syntax' and 'keymap'. Tests adapted
      back to vim 7.3 by James McCoy of Debian, thanks! Patch is also
      updated to add the tests to the set that are run during the build.
    - CVE-2016-1248

 -- Steve Beattie <email address hidden> Wed, 23 Nov 2016 18:06:44 -0800

CVE-2016-1248 vim before patch 8.0.0056 does not properly validate values for the 'filetype', 'syntax' and 'keymap' options, which may result in the execution of a

About   -   Send Feedback to @ubuntu_updates