Boletines de Vulnerabilidades |
Múltiples vulnerabilidades en Gnu Vim |
|
Clasificación de la vulnerabilidad |
|
Propiedad | Valor |
Nivel de Confianza | Oficial |
Impacto | Obtener acceso |
Dificultad | Principiante |
Requerimientos del atacante | Acceso remoto sin cuenta a un servicio estandar |
Información sobre el sistema |
|
Propiedad | Valor |
Fabricante afectado | GNU/Linux |
Software afectado |
Gnu Vim <= 7.1.314 Gnu Vim <= 6.4 |
Descripción |
|
Se han descubierto múltiples vulnerabilidades en Gnu Vim 6 y 7. Las vulnerabilidades son descritas a continuación: - CVE-2008-2712: La vulnerabilidad reside en un error en los scripts de Vim que no verifican correctamente las entradas de datos antes de invocar al ejecutable. Un atacante remoto asistido por el usuario podría ejecutar comandos arbitrarios mediante el uso de los plugins "filetype.vim", "zipplugin", "xpm.vim", "gzip_vim" y "netrw". - CVE-2008-3074: La vulnerabilidad reside en un error en "tar.vim", el plugin que maneja la navegación por archivos TAR. Un atacante remoto asistido por el usuario podría ejecutar código arbitrario mediante un fichero ".tar" especialmente diseñado. - CVE-2008-3075: La vulnerabilidad reside en un error en "zip.vim", el plugin que maneja la navegación por archivos ZIP. Un atacante remoto asistido por el usuario podría ejecutar código arbitrario mediante un fichero ".zip" especialmente diseñado. - CVE-2008-3076: La vulnerabilidad reside en un error en "netrw.vim", el plugin que maneja la navegación de archivos a través de la red. Un atacante remoto podría ejecutar código arbitrario mediante un fichero o un directorio especialmente diseñados que sean abiertos usando el plugin "netrw". Exploit público disponible. - CVE-2008-4101: La vulnerabilidad reside en un error en el escape de caracteres. Un atacante remoto asistido por el usuario podría ejecutar comandos shell arbitrarios introduciendo un argumento después de "Ctrl-" o bien mediante la secuencia "g]". |
|
Solución |
|
Actualización de software Red Hat (RHSA-2008:0580-18) Red Hat Enterprise Linux (v. 5 servidor) Red Hat Enterprise Linux Desktop (v. 5 cliente) https://rhn.redhat.com/ Red Hat (RHSA-2008:0617-15) Red Hat Desktop (v. 3) Red Hat Desktop (v. 4) Red Hat Enterprise Linux AS (v. 3) Red Hat Enterprise Linux AS (v. 4) Red Hat Enterprise Linux ES (v. 3) Red Hat Enterprise Linux ES (v. 4) Red Hat Enterprise Linux WS (v. 3) Red Hat Enterprise Linux WS (v. 4) https://rhn.redhat.com/ Red Hat (RHSA-2008:0618-8) Red Hat Enterprise Linux AS (v. 2.1) Red Hat Enterprise Linux ES (v. 2.1) Red Hat Enterprise Linux WS (v. 2.1) Red Hat Linux Advanced Workstation 2.1 para Itanium Processor https://rhn.redhat.com/ Debian (DSA-1733-1) Debian Linux 4.0 Source http://security.debian.org/pool/updates/main/v/vim/vim_7.0.orig.tar.gz http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5.diff.gz http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5.dsc Arquitectura independiente: http://security.debian.org/pool/updates/main/v/vim/vim-gui-common_7.0-122+1etch5_all.deb http://security.debian.org/pool/updates/main/v/vim/vim-runtime_7.0-122+1etch5_all.deb http://security.debian.org/pool/updates/main/v/vim/vim-doc_7.0-122+1etch5_all.deb alpha (DEC Alpha) http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_alpha.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_alpha.deb amd64 (AMD x86_64 (AMD64)) http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_amd64.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_amd64.deb arm (ARM) http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_arm.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_arm.deb i386 (Intel ia32) http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_i386.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_i386.deb ia64 (Intel ia64) http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_ia64.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_ia64.deb mips (MIPS (Big Endian)) http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_mips.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_mips.deb mipsel (MIPS (Little Endian)) http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_mipsel.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_mipsel.deb powerpc (PowerPC) http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_powerpc.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_powerpc.deb s390 (IBM S/390) http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_s390.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_s390.deb sparc (Sun SPARC/UltraSPARC) http://security.debian.org/pool/updates/main/v/vim/vim-tcl_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-tiny_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-lesstif_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-python_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-ruby_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-perl_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-gtk_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-common_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-gnome_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim_7.0-122+1etch5_sparc.deb http://security.debian.org/pool/updates/main/v/vim/vim-full_7.0-122+1etch5_sparc.deb Suse Linux Las actualizaciones pueden descargarse mediante YAST o del servidor FTP oficial de Suse Linux. |
|
Identificadores estándar |
|
Propiedad | Valor |
CVE |
CVE-2008-2712 CVE-2008-3074 CVE-2008-3075 CVE-2008-3076 CVE-2008-4101 |
BID |
29715 31681 32462 32463 30115 |
Recursos adicionales |
|
Red Hat Security Advisory (RHSA-2008:0580-18) https://rhn.redhat.com/errata/RHSA-2008-0580.html Red Hat Security Advisory (RHSA-2008:0617-15) https://rhn.redhat.com/errata/RHSA-2008-0617.html Red Hat Security Advisory (RHSA-2008:0618-8) https://rhn.redhat.com/errata/RHSA-2008-0618.html Debian Security Advisory (DSA-1733-1) http://lists.debian.org/debian-security-announce/2009/msg00043.html SUSE Security Advisory (SUSE-SR:2009:007) http://www.novell.com/linux/security/advisories/2009_7_sr.html |
Histórico de versiones |
||
Versión | Comentario | Fecha |
1.0 | Aviso emitido | 2008-11-27 |
1.1 | Aviso emitido por Debian (DSA-1733-1) | 2009-03-04 |
1.2 | Aviso emitido por Suse (SUSE-SR:2009:007) | 2009-03-25 |