X-Recipient: archive-cygwin AT delorie DOT com DKIM-Filter: OpenDKIM Filter v2.11.0 sourceware.org B57823858C35 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cygwin.com; s=default; t=1701067738; bh=XxOCp0Tvui3zFU2ax+HXkqDRJeRimTeoyjnpHYVqFLk=; h=Date:Subject:To:References:In-Reply-To:List-Id:List-Unsubscribe: List-Archive:List-Post:List-Help:List-Subscribe:From:Reply-To: From; b=IjtL9L3IMPNEoS6yKFGDyT1zJH4TsjbhfJ6GOYsLPEwGc+sRSDMsnOHZ0yZdhsdfB 6BBIOxmcLaEFVz5kBEpRNVho3GJSfRYYc29FgL8BRCEGEDCN2Rpd+pOA0pMDWnCASv n4EU9s5/6w3ySgP2Lo3J4G1wZngLsfgmMmkdpsoE= X-Original-To: cygwin AT cygwin DOT com Delivered-To: cygwin AT cygwin DOT com DMARC-Filter: OpenDMARC Filter v1.4.2 sourceware.org 99DF93858D33 ARC-Filter: OpenARC Filter v1.0.0 sourceware.org 99DF93858D33 ARC-Seal: i=1; a=rsa-sha256; d=sourceware.org; s=key; t=1701067703; cv=none; b=B2yJuzK7FKotPM39mclhlzQ8B2nRrUq5Pm1KlbZO1tjbMbedVnYddNCVd1SIyaCJu6Sia2U2sif6KlwklxpESFMztQqQD5/hJaWJOpc3p7tJ2dnoCVvTf3+GuoAOAVpZTYnSoAH3iqGjf/8Iq4wSMk6onNJciI6soQ4lCNEeyiA= ARC-Message-Signature: i=1; a=rsa-sha256; d=sourceware.org; s=key; t=1701067703; c=relaxed/simple; bh=lST1A1xxM/o2LnQXHSoQo2fA4dvB9+2i0w3gh+jiGi0=; h=DKIM-Signature:Message-ID:Date:MIME-Version:Subject:To:From; b=As3a97K39uzc6T+O1KY3lz/JHnhuf9aGVhWRdZlrEg1u4c07lqP2Rv+hJISE0XSy/8opXPZD9CWbv8qCzITc2SosnSvlgl2ERRwdZB3BFh6EmEoFUjIAG8XIYXATbzEY+u8DA2Kk5pob3F0lAKP+6/skJKsIVg/dmklscTw5n0A= ARC-Authentication-Results: i=1; server2.sourceware.org X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1701067699; x=1701672499; h=content-transfer-encoding:in-reply-to:from:references:to :content-language:subject:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=Mrow5RgHiP8mNWuhEov0u18LjZX9e6wL9fqWytFpceE=; b=qYNZMXIGSeqwcKxA4T5NrPerBlvjNm6pWWkFRJ96Z4uJzKsYYMAys5dpERlC9KiD3E lN5RJegrdUfxxAMIW5U0PYG349wghljkqrHENHa+cueotyRVEqjdTp5bUb75qgcXHWUI tjmm9P64+yObeaArpSQNIiJYcwv3ntc7yX+gXKLiOP/AS1gA6fVJcIl7RUccykHFR/v5 1O8LP9MmuaoSnmCsPOqTto5jDoSkzJTkmBI57kHMSsN9iu+Is9iqVb2GqXnRfP08BqqR 8JF9O0jZiWZdjfYiiinFjjFZNH/xXLaRw2VAHIWAeHbKZS+G9YgZypDfv+dzuvDnSVIQ E/yw== X-Gm-Message-State: AOJu0YzHVVvW1/b2qcJslw68QwLsvdcPWqfydm8YMAFwayb3H8civpnD xES6lecLAsGCP+BKWCBtRqvhn9RSAMw= X-Google-Smtp-Source: AGHT+IHrY+c+gFXKfKdKXsBFGT+QDNYy6fCRHxzB+uIx1svd5QJiKt20B0hKQbD46D10/y3DliVC+Q== X-Received: by 2002:a17:906:3787:b0:a02:9700:bf53 with SMTP id n7-20020a170906378700b00a029700bf53mr7213125ejc.46.1701067698889; Sun, 26 Nov 2023 22:48:18 -0800 (PST) Message-ID: <8ad53231-51d0-4d05-8096-29237316b83d@gmail.com> Date: Mon, 27 Nov 2023 07:48:17 +0100 MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Could we get Vim 9 packaged to fix CVEs Content-Language: it To: cygwin AT cygwin DOT com References: <122a988f-97dd-458a-9bc9-42a526e1b1e5 AT Shaw DOT ca> In-Reply-To: X-Spam-Status: No, score=0.0 required=5.0 tests=BAYES_00, BODY_8BITS, DKIM_SIGNED, DKIM_VALID, DKIM_VALID_AU, DKIM_VALID_EF, FREEMAIL_FROM, RCVD_IN_DNSWL_NONE, SPF_HELO_NONE, SPF_PASS, TXREP, T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on server2.sourceware.org X-BeenThere: cygwin AT cygwin DOT com X-Mailman-Version: 2.1.30 List-Id: General Cygwin discussions and problem reports List-Archive: List-Post: List-Help: List-Subscribe: , From: Marco Atzeri via Cygwin Reply-To: Marco Atzeri Content-Type: text/plain; charset="utf-8"; Format="flowed" Sender: "Cygwin" Content-Transfer-Encoding: 8bit X-MIME-Autoconverted: from base64 to 8bit by delorie.com id 3AR6mxKJ015633 On 17.11.2023 23:14, Brian Inglis via Cygwin wrote: > On 2023-11-12 15:27, Brian Inglis via Cygwin wrote: >> On 2023-11-09 09:35, Jack S via Cygwin wrote: >>> Would it be possible to update the vim packages with Vim 9, please? > >> Also now: >>      https://github.com/vim/vim/security/advisories/GHSA-q22m-h7m2-9mgm > > Expanding above: > > CVE-2023-46246: Integer overflow in :history Ex-Command in Vim < 9.0.2068 > https://github.com/vim/vim/security/advisories/GHSA-q22m-h7m2-9mgm > fixed in Vim patch 9.0.2068 > https://github.com/vim/vim/commit/9198c1f2b1ddecde22af918541e0de2a32f0f45a > ... Noted Regards Marco -- Problem reports: https://cygwin.com/problems.html FAQ: https://cygwin.com/faq/ Documentation: https://cygwin.com/docs.html Unsubscribe info: https://cygwin.com/ml/#unsubscribe-simple