USN-7419-1: Vim vulnerabilities
It was discovered that Vim incorrectly handled memory when using invalid input with the log option. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 24.04 LTS and Ubuntu 24.10. (CVE-2025-1215) It was discovered that Vim incorrectly handled memory when redirecting certain output to the register. An attacker could possibly use this issue to cause a denial of service. (CVE-2025-26603)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7419-1?
The severity of USN-7419-1 is classified as a potential denial of service vulnerability.
How do I fix USN-7419-1?
To fix USN-7419-1, update Vim to the correct version specified in the advisory for your Ubuntu release.
Which Ubuntu versions are affected by USN-7419-1?
USN-7419-1 affects Ubuntu 24.04 LTS, Ubuntu 24.10, Ubuntu 22.04, Ubuntu 20.04, Ubuntu 18.04, Ubuntu 16.04, and Ubuntu 14.04.
What is the CVE associated with USN-7419-1?
The CVE associated with USN-7419-1 is CVE-2025-1215.
Is my system at risk if I am using Vim on Ubuntu?
Yes, if you are using the affected versions of Vim on the specified Ubuntu releases, your system may be at risk.