Bug 2083931 (CVE-2022-1629) - CVE-2022-1629 vim: buffer over-read in function find_next_quote
Summary: CVE-2022-1629 vim: buffer over-read in function find_next_quote
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2022-1629
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2083932 2083935 2085346 2088274 2088275 2088276 2088277
Blocks: 2083930
TreeView+ depends on / blocked
 
Reported: 2022-05-11 04:00 UTC by Anten Skrabec
Modified: 2022-11-24 07:32 UTC (History)
7 users (show)

Fixed In Version: vim 8.2.4925
Doc Type: If docs needed, set a value
Doc Text:
A flaw was found in vim, where it is vulnerable to a buffer over-read in the find_next_quote function. This flaw allows a specially crafted file to crash software, modify memory and possibly perform remote execution when opened in vim.
Clone Of:
Environment:
Last Closed: 2022-07-01 11:41:46 UTC


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2022:5242 0 None None None 2022-06-28 14:58:30 UTC
Red Hat Product Errata RHSA-2022:5319 0 None None None 2022-06-28 18:32:41 UTC

Description Anten Skrabec 2022-05-11 04:00:15 UTC
Buffer Over-read in function find_next_quote in GitHub repository vim/vim prior to 8.2.4925. This vulnerabilities are capable of crashing software, Modify Memory, and possible remote execution

https://github.com/vim/vim/commit/53a70289c2712808e6d4e88927e03cac01b470dd

Comment 1 Anten Skrabec 2022-05-11 04:00:28 UTC
Created vim tracking bugs for this issue:

Affects: fedora-34 [bug 2083932]

Comment 2 Anten Skrabec 2022-05-11 04:01:48 UTC
Created vim tracking bugs for this issue:

Affects: fedora-35 [bug 2083935]

Comment 7 Sandro Bonazzola 2022-05-13 09:51:45 UTC
Hi, can you please elaborate on how is it possible that RHV is considered affected while RHEL is under investigation?
RHV just consume RHEL builds so it's not clear to me how this is possible.

Comment 11 errata-xmlrpc 2022-06-28 14:58:28 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2022:5242 https://access.redhat.com/errata/RHSA-2022:5242

Comment 12 errata-xmlrpc 2022-06-28 18:32:38 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2022:5319 https://access.redhat.com/errata/RHSA-2022:5319

Comment 13 Product Security DevOps Team 2022-07-01 11:41:44 UTC
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):

https://access.redhat.com/security/cve/cve-2022-1629


Note You need to log in before you can comment on or make changes to this bug.