Security Advisory Moderate: vim security update

Advisory: RHSA-2008:0618-8
Type: Security Advisory
Severity: Moderate
Issued on: 2008-11-25
Last updated on: 2008-11-25
Affected Products: Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
OVAL: N/A
CVEs (cve.mitre.org): CVE-2008-2712
CVE-2008-4101

Details

Updated vim packages that fix security issues are now available for Red Hat
Enterprise Linux 2.1.

This update has been rated as having moderate security impact by the Red Hat
Security Response Team.

Vim (Visual editor IMproved) is an updated and improved version of the vi
editor.

Several input sanitization flaws were found in Vim's keyword and tag
handling. If Vim looked up a document's maliciously crafted tag or keyword,
it was possible to execute arbitrary code as the user running Vim.
(CVE-2008-4101)

Several input sanitization flaws were found in various Vim system
functions. If a user opened a specially crafted file, it was possible to
execute arbitrary code as the user running Vim. (CVE-2008-2712)

All Vim users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188

Updated packages

Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
vim-6.0-7.25.src.rpm     5401371618d44fb6caa0c526500c5047
 
IA-32:
vim-X11-6.0-7.25.i386.rpm     16ac7de2eab8446c1ac796a5a5376885
vim-common-6.0-7.25.i386.rpm     0d54307c6b85b628fc93fb95247dae2d
vim-enhanced-6.0-7.25.i386.rpm     57acc964e25bde775a6adbe041f74a32
vim-minimal-6.0-7.25.i386.rpm     2cff21a33ceecf607b974363cbdc7416
 
IA-64:
vim-X11-6.0-7.25.ia64.rpm     ac9b9d61b7666a4ffb94d263f762928f
vim-common-6.0-7.25.ia64.rpm     421c5c0e3b361b6151ea56b3fee8a304
vim-enhanced-6.0-7.25.ia64.rpm     2f659d77f0cd19f08ad0c2ca738f4725
vim-minimal-6.0-7.25.ia64.rpm     884b7c1057f30cd7689418d6694ad798
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
vim-6.0-7.25.src.rpm     5401371618d44fb6caa0c526500c5047
 
IA-32:
vim-X11-6.0-7.25.i386.rpm     16ac7de2eab8446c1ac796a5a5376885
vim-common-6.0-7.25.i386.rpm     0d54307c6b85b628fc93fb95247dae2d
vim-enhanced-6.0-7.25.i386.rpm     57acc964e25bde775a6adbe041f74a32
vim-minimal-6.0-7.25.i386.rpm     2cff21a33ceecf607b974363cbdc7416
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
vim-6.0-7.25.src.rpm     5401371618d44fb6caa0c526500c5047
 
IA-32:
vim-X11-6.0-7.25.i386.rpm     16ac7de2eab8446c1ac796a5a5376885
vim-common-6.0-7.25.i386.rpm     0d54307c6b85b628fc93fb95247dae2d
vim-enhanced-6.0-7.25.i386.rpm     57acc964e25bde775a6adbe041f74a32
vim-minimal-6.0-7.25.i386.rpm     2cff21a33ceecf607b974363cbdc7416
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
vim-6.0-7.25.src.rpm     5401371618d44fb6caa0c526500c5047
 
IA-64:
vim-X11-6.0-7.25.ia64.rpm     ac9b9d61b7666a4ffb94d263f762928f
vim-common-6.0-7.25.ia64.rpm     421c5c0e3b361b6151ea56b3fee8a304
vim-enhanced-6.0-7.25.ia64.rpm     2f659d77f0cd19f08ad0c2ca738f4725
vim-minimal-6.0-7.25.ia64.rpm     884b7c1057f30cd7689418d6694ad798
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

451759 - CVE-2008-2712 vim: command execution via scripts not sanitizing inputs to execute and system
461927 - CVE-2008-4101 vim: arbitrary code execution in commands: K, Control-], g]


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/