Format: 1.7 Date: Wed, 07 Jan 2009 08:47:31 -0500 Source: vim Binary: vim-full vim-common vim-gnome vim-doc vim-runtime vim vim-gtk vim-perl vim-ruby vim-gui-common vim-tiny vim-python vim-tcl Architecture: lpia_translations lpia Version: 1:7.1-056+2ubuntu2.1 Distribution: gutsy Urgency: low Maintainer: Ubuntu/lpia Build Daemon Changed-By: Marc Deslauriers Description: vim - Vi IMproved - enhanced vi editor vim-common - Vi IMproved - Common files vim-full - Vi IMproved - enhanced vi editor - full fledged version vim-gnome - Vi IMproved - enhanced vi editor - with GNOME2 GUI vim-gtk - Vi IMproved - enhanced vi editor - with GTK2 GUI vim-perl - Vi IMproved - enhanced vi editor - with Perl support vim-python - Vi IMproved - enhanced vi editor - with Python support vim-ruby - Vi IMproved - enhanced vi editor - with Ruby support vim-tcl - Vi IMproved - enhanced vi editor - with TCL support vim-tiny - Vi IMproved - enhanced vi editor - compact version Changes: vim (1:7.1-056+2ubuntu2.1) gutsy-security; urgency=low . * SECURITY UPDATE: arbitrary command execution via vim scripts - patches/910_SECURITY_CVE-2008-2712.diff: Cherry-picked fixes from Debian's Lenny vim svn and backported NetrwDelete() from netrw v132 so we pass the netrw.v4 vulnerability test from www.rdancer.org - CVE-2008-2712 * SECURITY UPDATE: user-assisted arbitrary command execution from "K" in Visual mode - patches/911_SECURITY_CVE-2008-4104.diff: - Upstream patch 7.2.010 - src/normal.c: NUL-terminate the identifier string - src/normal.c: Only use the word under the cursor, instead of the entire line after the cursor, when constructing the shell command to run. - CVE-2008-4101 Files: 3d25d4b519ce9337f619851e85d8dfc6 1287032 raw-translations - vim_7.1-056+2ubuntu2.1_lpia_translations.tar.gz 586e93debbb43b0ce0ed6a21eb72920d 324578 editors important vim-tiny_7.1-056+2ubuntu2.1_lpia.deb 637b9e9f371939b0c46bf6e4a9c0453f 936940 editors extra vim-ruby_7.1-056+2ubuntu2.1_lpia.deb 2e89f9f2a81b820de804396ff46d57f6 878208 editors extra vim-tcl_7.1-056+2ubuntu2.1_lpia.deb 88c01ab5f296975105a8faab719a3c15 941128 editors extra vim-gtk_7.1-056+2ubuntu2.1_lpia.deb d705d68732b735a043ec08b53533a58f 947516 editors extra vim-perl_7.1-056+2ubuntu2.1_lpia.deb 4b45cd44c494f0f831ece3c22b971594 941142 editors extra vim-python_7.1-056+2ubuntu2.1_lpia.deb 740a1f4daf8a645b8e74e9180c5c5b67 947352 editors extra vim-gnome_7.1-056+2ubuntu2.1_lpia.deb 18c7df52886b595a94e97f1c2407888a 974946 editors extra vim-full_7.1-056+2ubuntu2.1_lpia.deb 220221a93ba298595d0651e8976832d2 186600 editors important vim-common_7.1-056+2ubuntu2.1_lpia.deb 3f7c52e9ca8b845e64285e4fb51a85b6 754072 editors optional vim_7.1-056+2ubuntu2.1_lpia.deb Original-Maintainer: Debian VIM Maintainers