R-238: VIM Security Update


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) R-238: VIM Security Update
# 1  
Old 12-24-2007
R-238: VIM Security Update

An arbitrary command execution flaw was found in the way VIM, Visual editor iMproved) processes modelines. The risk is MEDIUM. If a user with modelines enabled opened a text file containing a carefully crafted modeline, arbitrary commands could be executed as the user running VIM.


More...
Login or Register to Ask a Question

Previous Thread | Next Thread

1 More Discussions You Might Find Interesting

1. UNIX for Dummies Questions & Answers

error starting vim after an update?

After trying to make an update to my vim settings, i'm now getting this error message when vim tries to start. Any suggestions would be much appreciated :) Error detected while processing .vimrc: line 40: E15: Invalid expression: E15: Invalid expression: (0 Replies)
Discussion started by: khoges11
0 Replies
Login or Register to Ask a Question
MODELINE2FB(8)						      System Manager's Manual						    MODELINE2FB(8)

NAME
modeline2fb - simple modeline to fb.modes translator SYNOPSIS
modeline2fb [OPTION] [FILES] DESCRIPTION
Modeline2fb is a simple Perl script that converts XF86Config-style modelines to options suitable for a fb.modes file. Note that only one option can be successfully enabled at any particular time. OPTIONS
-d, --depth depth Use the given display depth (default is 8). -h --help Print out a help screen and exit. ADVANCED OPTIONS
-r --rounding div Sets the vxres divisor (default is 128). -x --vxres X,X,X,... Sets extra vxres values. [FILES] refers to one or more XF86Config files. Note that all modelines must be in single-line format. If no files are given on the com- mand line, this program reads from standard in. This program will also write to standard out. EXAMPLE
/usr/sbin/modeline2fb -d 16 /etc/X11/XF86Config SEE ALSO
fb.modes(5), XF86Config(5) AUTHOR
This manual page is a quick write-up for Debian done by Kevin Kreamer <kkreamer@etherhogz.org>. MODELINE2FB(8)