-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 02 Aug 2019 16:18:22 +0200 Source: vim Binary: vim-common vim-gui-common vim-runtime vim-doc vim-tiny vim vim-dbg vim-gtk vim-nox vim-athena vim-lesstif vim-gnome Architecture: source amd64 all Version: 2:7.4.488-7+deb8u4 Distribution: jessie-security Urgency: high Maintainer: Debian Vim Maintainers <pkg-vim-maintainers@lists.alioth.debian.org> Changed-By: Sylvain Beucler <beuc@debian.org> Description: vim - Vi IMproved - enhanced vi editor vim-athena - Vi IMproved - enhanced vi editor - with Athena GUI vim-common - Vi IMproved - Common files vim-dbg - Vi IMproved - enhanced vi editor (debugging symbols) vim-doc - Vi IMproved - HTML documentation vim-gnome - Vi IMproved - enhanced vi editor - with GNOME2 GUI vim-gtk - Vi IMproved - enhanced vi editor - with GTK2 GUI vim-gui-common - Vi IMproved - Common GUI files vim-lesstif - Vi IMproved - enhanced vi editor (transitional package) vim-nox - Vi IMproved - enhanced vi editor - with scripting languages suppo vim-runtime - Vi IMproved - Runtime files vim-tiny - Vi IMproved - enhanced vi editor - compact version Changes: vim (2:7.4.488-7+deb8u4) jessie-security; urgency=high . [Iain Lane] * debian/rules: Use ps2write. Ghostscript 9.10 removed the 'pswrite' device. We need to write level 2 postscript now. (cf. #785221) . [James McCoy] * Backport upstream patches to fix CVE-2017-11109 (cf. #867720) + 8.0.0703: Illegal memory access with empty :doau command + 8.0.0706: Crash when cancelling the cmdline window in Ex mode + 8.0.0707: Freeing wrong memory when manipulating buffers in autocommands . [Sylvain Beucler] * Fix CVE-2017-17087 + 8.0.1263: others can read the swap file if a user is careless * Fix CVE-2019-12735; don't backport the other 23 stretch patches as vim 7.4 doesn't have execute() nor assert_*() in expressions yet + 8.1.1365: source command doesn't check for the sandbox Checksums-Sha1: 3f301e499699923eec5c4b3dc6cac45b63e099ae 2520 vim_7.4.488-7+deb8u4.dsc 4948be3283af0b42ef1d0138e15e82c4194841b0 155636 vim_7.4.488-7+deb8u4.debian.tar.xz c163519ff958caa0de45883b93aca80f7e147ecf 1165304 vim-gtk_7.4.488-7+deb8u4_amd64.deb be09a49216a183c3db34da2c60814f9f492bd2e5 1168412 vim-gnome_7.4.488-7+deb8u4_amd64.deb e525d2e995b1e3fae6fe2e7fa997217f15d76480 1158878 vim-athena_7.4.488-7+deb8u4_amd64.deb 7d2c2fe4c38dcf0ccbcca73fc7a24da00225ac12 1049014 vim-nox_7.4.488-7+deb8u4_amd64.deb ee5a0e94c08f1c251173798e16929169810f586f 417828 vim-tiny_7.4.488-7+deb8u4_amd64.deb 827728c2b01d3b06f50841cd116ccfb62aafddab 149384 vim-gui-common_7.4.488-7+deb8u4_all.deb 684366fefe2e207e1da35858858e1c834c45c504 5051542 vim-runtime_7.4.488-7+deb8u4_all.deb b70874ea355dac0574a3b8090ba493c4c0f15f98 1760478 vim-doc_7.4.488-7+deb8u4_all.deb 9e2b7869f54242205f29fb615c3df6c8d7003dc4 90902 vim-lesstif_7.4.488-7+deb8u4_all.deb 18c039d08ae2b625bc7207a8383e560846adbf58 185320 vim-common_7.4.488-7+deb8u4_amd64.deb eeff70a5221ef1b5bba1d9e99c868d70f0c0e60a 952980 vim_7.4.488-7+deb8u4_amd64.deb 6e46546b719281cccc490d7f770efcf1559afea9 6167778 vim-dbg_7.4.488-7+deb8u4_amd64.deb Checksums-Sha256: b2f322d53232cdedd2f98e33fad8312c68740b7febc0e7287b75327cc1f48095 2520 vim_7.4.488-7+deb8u4.dsc 011dc6e16dd81416e7cc8105361700d3531df31ee0c85f4075b7ee086990bc59 155636 vim_7.4.488-7+deb8u4.debian.tar.xz 6c9996a9a35126ba76aa876c48bf7e441b0266ea4deb31094e6e024a36686897 1165304 vim-gtk_7.4.488-7+deb8u4_amd64.deb 1afd3adc85a82fdb59aff89a7d33ac62353b7549c4da0fbd093a8465f536e0ac 1168412 vim-gnome_7.4.488-7+deb8u4_amd64.deb d0d3b844c2835aa03ee018a26276ea8f4718b411bb096e43fe787c7e47687009 1158878 vim-athena_7.4.488-7+deb8u4_amd64.deb 33e4d1d4071501a98f50bce7f4d45bdee82deb9709aef55950063db3fc58a4b9 1049014 vim-nox_7.4.488-7+deb8u4_amd64.deb 9e9a916ed70040c092746d0713b7ae492649014e28d54b3b89aecbb247e0180b 417828 vim-tiny_7.4.488-7+deb8u4_amd64.deb 9d07573798337d439544f09970ceb5003bf426fa28020872efa5945cfd855a3f 149384 vim-gui-common_7.4.488-7+deb8u4_all.deb 6420a147e230fc56b55ae843035c50d5ae7cb6ffa359730ab360d542f2463738 5051542 vim-runtime_7.4.488-7+deb8u4_all.deb 4889f865267eec6569eae4c09e99e0b374766d7d51864a48ada573040b7c48cc 1760478 vim-doc_7.4.488-7+deb8u4_all.deb e9e88476086cc154e80b436974deaff35f23550e978fc0bc6548873f027e37f2 90902 vim-lesstif_7.4.488-7+deb8u4_all.deb ec632f0dfa958ec3f66ae47035cebaae1607faeabb6f0f74abc31b9858a7ef91 185320 vim-common_7.4.488-7+deb8u4_amd64.deb a67dd77974afa16052eb16b665d532e3bc9907f52cac82efaf39e6ffe21ee5c1 952980 vim_7.4.488-7+deb8u4_amd64.deb 455a80ca49348286ee49d8fd87ec05afb7c9bed2b5cebe808edeb26e289e13ef 6167778 vim-dbg_7.4.488-7+deb8u4_amd64.deb Files: fd2d07c0a7feb7a3e89a4711c1b0cc45 2520 editors optional vim_7.4.488-7+deb8u4.dsc 52e51464c43fb6ab29b074e0d1d9888d 155636 editors optional vim_7.4.488-7+deb8u4.debian.tar.xz f0239d9aa9305fc4570bb2e8e3317d2a 1165304 editors extra vim-gtk_7.4.488-7+deb8u4_amd64.deb 6103841ffdf9eff975399e9edd3f7821 1168412 editors extra vim-gnome_7.4.488-7+deb8u4_amd64.deb 1aafdb19cbfbc7db3c322664d12ab8f2 1158878 editors extra vim-athena_7.4.488-7+deb8u4_amd64.deb b9e699b96cafa85602e0560592086c45 1049014 editors extra vim-nox_7.4.488-7+deb8u4_amd64.deb 148898ba162d143acc80cd85cb301d99 417828 editors important vim-tiny_7.4.488-7+deb8u4_amd64.deb 73716c4a713ab72fb854ea90ffd8f699 149384 editors optional vim-gui-common_7.4.488-7+deb8u4_all.deb e9fe51c25f632bfdcd3df9dca693ab4c 5051542 editors optional vim-runtime_7.4.488-7+deb8u4_all.deb b2c8a7dd4c0f3be5be60e78ad8886ec8 1760478 doc optional vim-doc_7.4.488-7+deb8u4_all.deb 37a4052a448ee3d212fdbb4c1eec0286 90902 oldlibs extra vim-lesstif_7.4.488-7+deb8u4_all.deb 5dfb4ef4ff6ddb59600f7744c9269dff 185320 editors important vim-common_7.4.488-7+deb8u4_amd64.deb d83f724caed0e22cf4358ad6fa62a13c 952980 editors optional vim_7.4.488-7+deb8u4_amd64.deb a498cccfb1535ec94cc098e538511b37 6167778 debug extra vim-dbg_7.4.488-7+deb8u4_amd64.deb -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEQic8GuN/xDR88HkSj/HLbo2JBZ8FAl1FVBkACgkQj/HLbo2J BZ+rzggAjouDyHRxHgjdhgLmZgvWsxAaxSKoaThOG7FasOiZe8D0u5yayASoY+Ut Jn+LaWJGi/Lgv86puI60JnepnE9T+/n4KN1n/z5gauis9urrrt+X/9FlWXb76B20 n//jVc3Ju87ZGUbHg6v2DCiye2mpkHNAEu6TZsnoJ2SMYFCwheIzanj/XvytqPun F6glKkSFYQJJI/nXlmXXS3ZgJqF2DJeCV2tmkNqwwW50CqoZnQKDKgEpNDTjEr2z zjT8dCUECcf8Wzp3Nm8VU5O7tIbiYMMMDLs5ETNj4Gi9dzi1MqgabEXpr0IC2xl/ R+d8fiEMgVxzuYzwBdIb5y4SPcWE/g== =8Xok -----END PGP SIGNATURE-----