Integer overflow in Vim - CVE-2017-6350
Published: August 3, 2020
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow when reading undo files. A remote attacker can trick the victim to open a specially crafted undo file, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
Amazon Linux AMI
Gentoo Linux
SUSE OpenStack Cloud
SUSE OpenStack Cloud Crowbar
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
Fedora
Dell Data Protection Central
Dell EMC PowerProtect Data Protection
WebSVN
EMC Cloud Tiering Appliance
neovim (Alpine package)
vim
vim-data
vim-data-common
gvim
gvim-debuginfo
vim-debuginfo
vim-debugsource
EMC ViPR SRM
Dell EMC Storage Monitoring and Reporting (SMR)
Dell Secure Connect Gateway
How to mitigate CVE-2017-6350
neovim (Alpine package) - update to 0.2.2-r1
EMC ViPR SRM - update to 4.9.0.0
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.9.0.0
Dell Secure Connect Gateway - update to 5.14.00.16
vim - addressed in versions 8.0.386-1.fc24, 8.0.386-1.fc25
vim-data - update to 9.0.0814-17.9.1
vim-data-common - update to 9.0.0814-17.9.1
gvim - update to 9.0.0814-17.9.1
gvim-debuginfo - update to 9.0.0814-17.9.1
vim - update to 9.0.0814-17.9.1
vim-debuginfo - update to 9.0.0814-17.9.1
vim-debugsource - update to 9.0.0814-17.9.1
EMC Cloud Tiering Appliance - update to 13.1.0.2.29
External References
- http://www.securityfocus.com/bid/96448
- http://www.securitytracker.com/id/1037949
- https://github.com/vim/vim/commit/0c8485f0e4931463c0f7986e1ea84a7d79f10c75
- https://groups.google.com/forum/#!topic/vim_dev/L_dOHOOiQ5Q
- https://groups.google.com/forum/#!topic/vim_dev/QPZc0CY9j3Y
- https://security.gentoo.org/glsa/201706-26
- https://usn.ubuntu.com/4309-1/
Related Security Bulletins
- Integer overflow in Vim
- Integer overflow in neovim (Alpine package)
- Amazon Linux AMI update for vim
- Gentoo update for Vim, gVim
- SUSE update for vim
- Multiple vulnerabilities in Dell Secure Connect Gateway
- Multiple vulnerabilities in Dell Cloud Tiering Appliance
- Multiple vulnerabilities in Dell EMC SRM and Dell EMC Storage Monitoring and Reporting (SMR)
- Multiple vulnerabilities in Dell Data Protection Central
- Fedora 24 update for vim
- Fedora 25 update for vim