-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 28 Aug 2024 06:41:08 -0400 Source: vim Architecture: source Version: 2:9.1.0698-1 Distribution: unstable Urgency: medium Maintainer: Debian Vim Maintainers <team+vim@tracker.debian.org> Changed-By: James McCoy <jamessan@debian.org> Closes: 509940 Changes: vim (2:9.1.0698-1) unstable; urgency=medium . * Merge upstream tag v9.1.0698 + Security fixes: - 9.1.0647: Fix use-after-free in tagstack_clear_entry(), CVE-2024-41957 - 9.1.0648: Fix double free in dialog_changed(), CVE-2024-41965 - 9.1.0678: Fix use-after-free in alist_add(), CVE-2024-43374 - 9.1.0689: Fix buffer-overflow in do_search() when 'rightleft' is set, CVE-2024-43790 - 9.1.0697: Fix heap-buffer-overflow in ins_typebuf(), CVE-2024-43802 + 9.1.0568: Add support for completing paths from 'cdpath' in :cd (Closes: #509940) * Clarify defaults.vim instructions in system vimrc when wanting to source defaults.vim to build on top of its settings. * Adjust make parameter used to specify vim binary, since upstream changed the expected variable name in multiple makefiles Checksums-Sha1: 7cabf25fcabf2316ab96f4e50a0eaa57587efd02 3202 vim_9.1.0698-1.dsc 5eb4cd2924fe4d4c831b7183619bd72912331a19 11958072 vim_9.1.0698.orig.tar.xz cf7c84ef8b6243d8a7e2f7962e5b2f867478c3f5 188640 vim_9.1.0698-1.debian.tar.xz Checksums-Sha256: 41cfa81b9e546d3f884dc41177b7f1ac1f94f5a4d90757ed81ada86f25651223 3202 vim_9.1.0698-1.dsc 3b2c850c848cd50f1b6a6a9688021402abe3e4482d3ca16d8e55895b661a0850 11958072 vim_9.1.0698.orig.tar.xz bde2f1f9dbbc8b1a38c100e8f2853f62fac29d4a3049e2e24f1842e892683b74 188640 vim_9.1.0698-1.debian.tar.xz Files: 11f52419747218ac13cf68417b8c52a1 3202 editors optional vim_9.1.0698-1.dsc 0e7018b54dab7c2f77235971d6a27ed1 11958072 editors optional vim_9.1.0698.orig.tar.xz 03fbd534eda548f8ab63d4efe29cdb90 188640 editors optional vim_9.1.0698-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKoBAEBCgCSFiEEkb+/TWlWvV33ty0j3+aRrjMbo9sFAmbO/0hfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDkx QkZCRjRENjk1NkJENURGN0I3MkQyM0RGRTY5MUFFMzMxQkEzREIUHGphbWVzc2Fu QGRlYmlhbi5vcmcACgkQ3+aRrjMbo9tUWBAAwqbaxNHntwTXgZgPVl5FsCPnIZmS hmuOchc0hFM7mumoBIZzWw2OfFBUQwNnra2jfUY0OeAXG+jqVBn108ixTWYObe++ cN0PVhhmKSKftTAvKqXqGtk88iqfrnXs3krOec4aKF7GJV559hJbXQgn7HB7TYQm L6zHAGPdEYnSKp7/cVY9dJv88TnOW+F5WN0RQSOusl7oLsudtSJF73PZP4N9wgDh F9fE0jl+IEnKBw1qhY+gr2mzJgGiJG6thHchFKh+1BTPaHJgHtMa90VgFUQHHDZ8 zrHvG1t+z2+obPj3woiovJlLIAwBQJ0QMrkF0kwvTT3L+XVWjyqjR23M0L4KJMdJ 9aKBg4nc6PoH66vGwTItGcQCCK1TE0ReQZwvy6Izcg2cAHyPqJtRtMnbTRaDsr7u pynehQyYNntWinlIRzJYaUNCgV2/N0rU5vPwP7Sygj3kH+tCsX2FSw74udQnhjt4 73UBZKeg6M+U/8WjVdg3I9eiGI4yzq5Ahyc/vZF32RSICRg7aELw4MRDE8tkd4pJ AbAOiDMsuAMBNFxB0GUbDmvwg8r7WBzUGRgj88jgKTg4/3Q1T7eDCpNxfCKKZlfX G/7MkIrzf7bbIlVpeEk/YomdJGTZdfo3KgpWW9i/gGicQUxszRKR641jaXpwdCCL Sv8wba9YZWWNI8w= =A4CQ -----END PGP SIGNATURE-----