QID 356971
Date Published: 2024-01-17
QID 356971: Amazon Linux Security Advisory for vim : AL2012-2023-455
Package updates are available for Amazon Linux that fix the following vulnerabilities:
CVE-2023-4781:
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.
CVE-2023-4752:
Use After Free in GitHub repository vim/vim prior to 9.0.1858.
CVE-2023-4750:
Use After Free in GitHub repository vim/vim prior to 9.0.1857.
CVE-2023-4733:
Use After Free in GitHub repository vim/vim prior to 9.0.1840.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Administrators are advised to apply the appropriate software updates.
Vendor References
CVEs related to QID 356971
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| AL2012-2023-455 | Amazon Linux Bare Metal |
|