Submitted by KeesCook on Thu, 2004-12-23 12:00
Referenced CVEs:
CAN-2004-1138
Description:
===========================================================
Ubuntu Security Notice USN-52-1 December 23, 2004
vim vulnerability
CAN-2004-1138
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 4.10 (Warty Warthog)
The following packages are affected:
kvim
vim
vim-gnome
vim-gtk
vim-lesstif
vim-perl
vim-python
vim-tcl
The problem can be corrected by upgrading the affected package to
version 1:6.3-025+1ubuntu2.1. In general, a standard system upgrade is
sufficient to effect the necessary changes.
Details follow:
Ciaran McCreesh found several vulnerabilities related to the use of
options in Vim modeline commands, such as 'termcap', 'printdevice',
'titleold', 'filetype', 'syntax', 'backupext', 'keymap', 'patchmode',
and 'langmenu'.
If an attacker tricked an user to open a file with a specially crafted
modeline, he could exploit this to execute arbitrary commands with the
user's privileges.


