Integer overflow - CVE-2017-5953
Published: February 10, 2017 / Updated: August 4, 2020
Vulnerability identifier: #VU33442
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-5953
CWE-ID: CWE-190
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result in an integer overflow at a memory allocation site and a resultant buffer overflow.
Affected software
Arch Linux
Amazon Linux AMI
Gentoo Linux
SUSE OpenStack Cloud
SUSE OpenStack Cloud Crowbar
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
Fedora
Dell Data Protection Central
Dell EMC PowerProtect Data Protection
EMC Cloud Tiering Appliance
EMC ViPR SRM
Dell EMC Storage Monitoring and Reporting (SMR)
Dell Secure Connect Gateway
RecoverPoint for VMs
vim
vim-data
vim-data-common
gvim
gvim-debuginfo
vim-debuginfo
vim-debugsource
Amazon Linux AMI
Gentoo Linux
SUSE OpenStack Cloud
SUSE OpenStack Cloud Crowbar
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
Fedora
Dell Data Protection Central
Dell EMC PowerProtect Data Protection
EMC Cloud Tiering Appliance
EMC ViPR SRM
Dell EMC Storage Monitoring and Reporting (SMR)
Dell Secure Connect Gateway
RecoverPoint for VMs
vim
vim-data
vim-data-common
gvim
gvim-debuginfo
vim-debuginfo
vim-debugsource
How to mitigate CVE-2017-5953
Install update from vendor's website.
EMC ViPR SRM - update to 4.9.0.0
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.9.0.0
Dell Secure Connect Gateway - update to 5.14.00.16
RecoverPoint for VMs - update to 6.0.SP1.P1
vim - addressed in versions 8.0.324-1.fc24, 8.0.324-1.fc25
vim-data - update to 9.0.0814-17.9.1
vim-data-common - update to 9.0.0814-17.9.1
gvim - update to 9.0.0814-17.9.1
gvim-debuginfo - update to 9.0.0814-17.9.1
vim - update to 9.0.0814-17.9.1
vim-debuginfo - update to 9.0.0814-17.9.1
vim-debugsource - update to 9.0.0814-17.9.1
EMC Cloud Tiering Appliance - update to 13.1.0.2.29
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.9.0.0
Dell Secure Connect Gateway - update to 5.14.00.16
RecoverPoint for VMs - update to 6.0.SP1.P1
vim - addressed in versions 8.0.324-1.fc24, 8.0.324-1.fc25
vim-data - update to 9.0.0814-17.9.1
vim-data-common - update to 9.0.0814-17.9.1
gvim - update to 9.0.0814-17.9.1
gvim-debuginfo - update to 9.0.0814-17.9.1
vim - update to 9.0.0814-17.9.1
vim-debuginfo - update to 9.0.0814-17.9.1
vim-debugsource - update to 9.0.0814-17.9.1
EMC Cloud Tiering Appliance - update to 13.1.0.2.29
External References
- http://www.debian.org/security/2017/dsa-3786
- http://www.securityfocus.com/bid/96217
- https://github.com/vim/vim/commit/399c297aa93afe2c0a39e2a1b3f972aebba44c9d
- https://groups.google.com/forum/#!topic/vim_dev/t-3RSdEnrHY
- https://security.gentoo.org/glsa/201706-26
- https://usn.ubuntu.com/4016-1/
- https://usn.ubuntu.com/4309-1/
Related Security Bulletins
- Arch Linux update for vim
- Arch Linux update for gvim
- Amazon Linux AMI update for vim
- Gentoo update for Vim, gVim
- SUSE update for vim
- Multiple vulnerabilities in Dell Secure Connect Gateway
- Multiple vulnerabilities in Dell Cloud Tiering Appliance
- Multiple vulnerabilities in Dell EMC SRM and Dell EMC Storage Monitoring and Reporting (SMR)
- Multiple vulnerabilities in Dell Data Protection Central
- Multiple vulnerabilities in Dell RecoverPoint for Virtual Machines
- Fedora 24 update for vim
- Fedora 25 update for vim