USN-7261-1: Vim vulnerability
Published Feb 10, 2025
·Updated
It was discovered that Vim incorrectly handled certain internal calls when scrolling a window. An attacker could possibly use this issue to cause a denial of service.
Affected Software
6 affected componentsFixes available
All of the following
ubuntu/vim<2:9.1.0496-1ubuntu6.4
2:9.1.0496-1ubuntu6.4
Ubuntu Ubuntu=24.10
All of the following
ubuntu/vim<2:8.2.3995-1ubuntu2.23
2:8.2.3995-1ubuntu2.23
Ubuntu Ubuntu=22.04
All of the following
ubuntu/vim<2:8.1.2269-1ubuntu5.31
2:8.1.2269-1ubuntu5.31
Ubuntu Ubuntu=20.04
Event History
Feb 10, 2025
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-7261-1?
The severity of USN-7261-1 is classified as a denial of service vulnerability.
2
How do I fix USN-7261-1?
To fix USN-7261-1, update to the patched versions of Vim: 2:9.1.0496-1ubuntu6.4, 2:8.2.3995-1ubuntu2.23, or 2:8.1.2269-1ubuntu5.31 depending on your Ubuntu version.
3
Which versions of Ubuntu are affected by USN-7261-1?
USN-7261-1 affects Ubuntu 20.04, 22.04, and 24.10 with specific vulnerable versions of Vim.
4
Can USN-7261-1 be exploited remotely?
USN-7261-1 does not indicate that it can be exploited remotely, but it can lead to denial of service if an attacker has access.
5
What products are impacted by USN-7261-1?
The impacted product by USN-7261-1 is Vim, which is bundled with Ubuntu distributions.