Msrc Cm1 Vim 8.1.1667-1 On Cbl Mariner 1.0 vulnerabilities
2 known vulnerabilities affecting msrc/cm1_vim_8.1.1667-1_on_cbl_mariner_1.0.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-20807MEDIUMCVSS 5.32020-05-12
CVE-2019-20807 [MEDIUM] CWE-78 In Vim before 8.1.0881 users can circumvent the rvim restricted mode and execute arbitrary OS commands via scripting interfaces (e.g. Python Ruby or Lua).
In Vim before 8.1.0881 users can circumvent the rvim restricted mode and execute arbitrary OS commands via scripting interfaces (e.g. Python Ruby or Lua).
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the
msrc
CVE-2019-20079HIGHCVSS 7.82019-12-10
CVE-2019-20079 [HIGH] CWE-416 The autocmd feature in window.c in Vim before 8.1.2136 accesses freed memory.
The autocmd feature in window.c in Vim before 8.1.2136 accesses freed memory.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versio
msrc