Bug#320017: marked as done (vim: Arbitrary code execution in
modelines)
Norbert Tretkowski
norbert at tretkowski.de
Sat Jul 30 11:48:52 UTC 2005
reopen 320017
thanks
* Debian Bug Tracking System wrote:
> vim (1:6.3-071+1sarge1) stable; urgency=high
> .
> * New upstream patches (081 and 082), see README.gz for details.
> + 6.3.081, 6.3.082: Fix arbitrary shell commands execution by wrapping
> them in glob() or expand() function calls in modelines. (CAN-2005-2368)
> (closes: #320017)
I'm going to close it when 3.1r1 is released.
Norbert
More information about the pkg-vim-maintainers
mailing list