Bugzilla – Bug 1126750
VUL-1: CVE-2018-20786: vim: libvterm mishandles certain out-of-memory conditions, leading to a denial of service
Last modified: 2024-05-24 10:21:38 UTC
CVE-2018-20786 libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-20786 https://github.com/vim/vim/issues/3711 https://github.com/vim/vim/commit/cd929f7ba8cc5b6d6dcf35c8b34124e969fed6b8
Only treating SUSE:SLE-15:Update as affected. In previous version of vim libvterm was not included.
Minor issue. Won't fix for SUSE:SLE-15:Update. Closing bug.