Mercurial > vim
annotate SECURITY.md @ 33778:06ad070cda83 v9.0.2109
patch 9.0.2109: [security]: overflow in nv_z_get_count
Commit: https://github.com/vim/vim/commit/58f9befca1fa172068effad7f2ea5a9d6a7b0cca
Author: Christian Brabandt <cb@256bit.org>
Date: Tue Nov 14 21:02:30 2023 +0100
patch 9.0.2109: [security]: overflow in nv_z_get_count
Problem: [security]: overflow in nv_z_get_count
Solution: break out, if count is too large
When getting the count for a normal z command, it may overflow for large
counts given. So verify, that we can safely store the result in a long.
Signed-off-by: Christian Brabandt <cb@256bit.org>
author | Christian Brabandt <cb@256bit.org> |
---|---|
date | Thu, 16 Nov 2023 22:15:11 +0100 |
parents | 13e4398925ea |
children |
rev | line source |
---|---|
32717
b807b0aa8e1f
Add security policy (#12687)
Christian Brabandt <cb@256bit.org>
parents:
diff
changeset
|
1 # Security Policy |
b807b0aa8e1f
Add security policy (#12687)
Christian Brabandt <cb@256bit.org>
parents:
diff
changeset
|
2 |
b807b0aa8e1f
Add security policy (#12687)
Christian Brabandt <cb@256bit.org>
parents:
diff
changeset
|
3 ## Reporting a vulnerability |
b807b0aa8e1f
Add security policy (#12687)
Christian Brabandt <cb@256bit.org>
parents:
diff
changeset
|
4 |
33648
13e4398925ea
please report security issues to the vim-security list
Christian Brabandt <cb@256bit.org>
parents:
33616
diff
changeset
|
5 If you want to report a security issue, please privately disclose the issue to the vim-security mailing list |
13e4398925ea
please report security issues to the vim-security list
Christian Brabandt <cb@256bit.org>
parents:
33616
diff
changeset
|
6 vim-security@googlegroups.com |
13e4398925ea
please report security issues to the vim-security list
Christian Brabandt <cb@256bit.org>
parents:
33616
diff
changeset
|
7 |
13e4398925ea
please report security issues to the vim-security list
Christian Brabandt <cb@256bit.org>
parents:
33616
diff
changeset
|
8 This is a private list, read only by the maintainers, but anybody can post, after moderation. |
32717
b807b0aa8e1f
Add security policy (#12687)
Christian Brabandt <cb@256bit.org>
parents:
diff
changeset
|
9 |
b807b0aa8e1f
Add security policy (#12687)
Christian Brabandt <cb@256bit.org>
parents:
diff
changeset
|
10 **Please don't publicly disclose the issue until it has been addressed by us.** |