Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.871734
Category:Red Hat Local Security Checks
Title:RedHat Update for vim RHSA-2016:2972-01
Summary:The remote host is missing an update for the 'vim'; package(s) announced via the referenced advisory.
Description:Summary:
The remote host is missing an update for the 'vim'
package(s) announced via the referenced advisory.

Vulnerability Insight:
Vim (Vi IMproved) is an updated and
improved version of the vi editor.

Security Fix(es):

* A vulnerability was found in vim in how certain modeline options were
treated. An attacker could craft a file that, when opened in vim with
modelines enabled, could execute arbitrary commands with privileges of the
user running vim. (CVE-2016-1248)

Affected Software/OS:
vim on
Red Hat Enterprise Linux Desktop (v. 6),
Red Hat Enterprise Linux Server (v. 6),
Red Hat Enterprise Linux Server (v. 7),
Red Hat Enterprise Linux Workstation (v. 6)

Solution:
Please Install the Updated Packages.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-1248
BugTraq ID: 94478
http://www.securityfocus.com/bid/94478
Debian Security Information: DSA-3722 (Google Search)
http://www.debian.org/security/2016/dsa-3722
https://security.gentoo.org/glsa/201701-29
https://lists.debian.org/debian-lts-announce/2016/11/msg00025.html
RedHat Security Advisories: RHSA-2016:2972
http://rhn.redhat.com/errata/RHSA-2016-2972.html
http://www.securitytracker.com/id/1037338
http://www.ubuntu.com/usn/USN-3139-1
CopyrightCopyright (C) 2016 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.