delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2023/11/27/01:48:59

X-Recipient: archive-cygwin AT delorie DOT com
DKIM-Filter: OpenDKIM Filter v2.11.0 sourceware.org B57823858C35
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cygwin.com;
s=default; t=1701067738;
bh=XxOCp0Tvui3zFU2ax+HXkqDRJeRimTeoyjnpHYVqFLk=;
h=Date:Subject:To:References:In-Reply-To:List-Id:List-Unsubscribe:
List-Archive:List-Post:List-Help:List-Subscribe:From:Reply-To:
From;
b=IjtL9L3IMPNEoS6yKFGDyT1zJH4TsjbhfJ6GOYsLPEwGc+sRSDMsnOHZ0yZdhsdfB
6BBIOxmcLaEFVz5kBEpRNVho3GJSfRYYc29FgL8BRCEGEDCN2Rpd+pOA0pMDWnCASv
n4EU9s5/6w3ySgP2Lo3J4G1wZngLsfgmMmkdpsoE=
X-Original-To: cygwin AT cygwin DOT com
Delivered-To: cygwin AT cygwin DOT com
DMARC-Filter: OpenDMARC Filter v1.4.2 sourceware.org 99DF93858D33
ARC-Filter: OpenARC Filter v1.0.0 sourceware.org 99DF93858D33
ARC-Seal: i=1; a=rsa-sha256; d=sourceware.org; s=key; t=1701067703; cv=none;
b=B2yJuzK7FKotPM39mclhlzQ8B2nRrUq5Pm1KlbZO1tjbMbedVnYddNCVd1SIyaCJu6Sia2U2sif6KlwklxpESFMztQqQD5/hJaWJOpc3p7tJ2dnoCVvTf3+GuoAOAVpZTYnSoAH3iqGjf/8Iq4wSMk6onNJciI6soQ4lCNEeyiA=
ARC-Message-Signature: i=1; a=rsa-sha256; d=sourceware.org; s=key;
t=1701067703; c=relaxed/simple;
bh=lST1A1xxM/o2LnQXHSoQo2fA4dvB9+2i0w3gh+jiGi0=;
h=DKIM-Signature:Message-ID:Date:MIME-Version:Subject:To:From;
b=As3a97K39uzc6T+O1KY3lz/JHnhuf9aGVhWRdZlrEg1u4c07lqP2Rv+hJISE0XSy/8opXPZD9CWbv8qCzITc2SosnSvlgl2ERRwdZB3BFh6EmEoFUjIAG8XIYXATbzEY+u8DA2Kk5pob3F0lAKP+6/skJKsIVg/dmklscTw5n0A=
ARC-Authentication-Results: i=1; server2.sourceware.org
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20230601; t=1701067699; x=1701672499;
h=content-transfer-encoding:in-reply-to:from:references:to
:content-language:subject:user-agent:mime-version:date:message-id
:x-gm-message-state:from:to:cc:subject:date:message-id:reply-to;
bh=Mrow5RgHiP8mNWuhEov0u18LjZX9e6wL9fqWytFpceE=;
b=qYNZMXIGSeqwcKxA4T5NrPerBlvjNm6pWWkFRJ96Z4uJzKsYYMAys5dpERlC9KiD3E
lN5RJegrdUfxxAMIW5U0PYG349wghljkqrHENHa+cueotyRVEqjdTp5bUb75qgcXHWUI
tjmm9P64+yObeaArpSQNIiJYcwv3ntc7yX+gXKLiOP/AS1gA6fVJcIl7RUccykHFR/v5
1O8LP9MmuaoSnmCsPOqTto5jDoSkzJTkmBI57kHMSsN9iu+Is9iqVb2GqXnRfP08BqqR
8JF9O0jZiWZdjfYiiinFjjFZNH/xXLaRw2VAHIWAeHbKZS+G9YgZypDfv+dzuvDnSVIQ
E/yw==
X-Gm-Message-State: AOJu0YzHVVvW1/b2qcJslw68QwLsvdcPWqfydm8YMAFwayb3H8civpnD
xES6lecLAsGCP+BKWCBtRqvhn9RSAMw=
X-Google-Smtp-Source: AGHT+IHrY+c+gFXKfKdKXsBFGT+QDNYy6fCRHxzB+uIx1svd5QJiKt20B0hKQbD46D10/y3DliVC+Q==
X-Received: by 2002:a17:906:3787:b0:a02:9700:bf53 with SMTP id
n7-20020a170906378700b00a029700bf53mr7213125ejc.46.1701067698889;
Sun, 26 Nov 2023 22:48:18 -0800 (PST)
Message-ID: <8ad53231-51d0-4d05-8096-29237316b83d@gmail.com>
Date: Mon, 27 Nov 2023 07:48:17 +0100
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
Subject: Re: Could we get Vim 9 packaged to fix CVEs
To: cygwin AT cygwin DOT com
References: <CAN3V7BRCjqUU0h3pGgrQg7y-jDLLGEbtsXMzCjtWENFaGrGf+Q AT mail DOT gmail DOT com>
<122a988f-97dd-458a-9bc9-42a526e1b1e5 AT Shaw DOT ca>
<bf424fdc-2f78-4182-bb92-40cd64f80414 AT Shaw DOT ca>
In-Reply-To: <bf424fdc-2f78-4182-bb92-40cd64f80414@Shaw.ca>
X-Spam-Status: No, score=0.0 required=5.0 tests=BAYES_00, BODY_8BITS,
DKIM_SIGNED, DKIM_VALID, DKIM_VALID_AU, DKIM_VALID_EF, FREEMAIL_FROM,
RCVD_IN_DNSWL_NONE, SPF_HELO_NONE, SPF_PASS, TXREP,
T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.6
X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on
server2.sourceware.org
X-BeenThere: cygwin AT cygwin DOT com
X-Mailman-Version: 2.1.30
List-Id: General Cygwin discussions and problem reports <cygwin.cygwin.com>
List-Archive: <https://cygwin.com/pipermail/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-request AT cygwin DOT com?subject=help>
List-Subscribe: <https://cygwin.com/mailman/listinfo/cygwin>,
<mailto:cygwin-request AT cygwin DOT com?subject=subscribe>
From: Marco Atzeri via Cygwin <cygwin AT cygwin DOT com>
Reply-To: Marco Atzeri <marco DOT atzeri AT gmail DOT com>
Sender: "Cygwin" <cygwin-bounces+archive-cygwin=delorie DOT com AT cygwin DOT com>
X-MIME-Autoconverted: from base64 to 8bit by delorie.com id 3AR6mxKJ015633

On 17.11.2023 23:14, Brian Inglis via Cygwin wrote:
> On 2023-11-12 15:27, Brian Inglis via Cygwin wrote:
>> On 2023-11-09 09:35, Jack S via Cygwin wrote:
>>> Would it be possible to update the vim packages with Vim 9, please?
> 
>> Also now:
>>      https://github.com/vim/vim/security/advisories/GHSA-q22m-h7m2-9mgm
> 
> Expanding above:
> 
> CVE-2023-46246: Integer overflow in :history Ex-Command in Vim < 9.0.2068
> https://github.com/vim/vim/security/advisories/GHSA-q22m-h7m2-9mgm
> fixed in Vim patch 9.0.2068
> https://github.com/vim/vim/commit/9198c1f2b1ddecde22af918541e0de2a32f0f45a
> 
...

Noted

Regards
Marco


-- 
Problem reports:      https://cygwin.com/problems.html
FAQ:                  https://cygwin.com/faq/
Documentation:        https://cygwin.com/docs.html
Unsubscribe info:     https://cygwin.com/ml/#unsubscribe-simple

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019