Mercurial > vim
view .github/ISSUE_TEMPLATE/bug_report.yml @ 33778:06ad070cda83 v9.0.2109
patch 9.0.2109: [security]: overflow in nv_z_get_count
Commit: https://github.com/vim/vim/commit/58f9befca1fa172068effad7f2ea5a9d6a7b0cca
Author: Christian Brabandt <cb@256bit.org>
Date: Tue Nov 14 21:02:30 2023 +0100
patch 9.0.2109: [security]: overflow in nv_z_get_count
Problem: [security]: overflow in nv_z_get_count
Solution: break out, if count is too large
When getting the count for a normal z command, it may overflow for large
counts given. So verify, that we can safely store the result in a long.
Signed-off-by: Christian Brabandt <cb@256bit.org>
author | Christian Brabandt <cb@256bit.org> |
---|---|
date | Thu, 16 Nov 2023 22:15:11 +0100 |
parents | 13e4398925ea |
children |
line wrap: on
line source
--- name: Bug report description: Create a report to help us improve Vim. labels: [bug] body: - type: markdown attributes: value: | Thanks for reporting issues of Vim! If you want to report a security issue, instead of reporting it here publicly, please disclose it privately via mail to vim-security@googlegroups.com. (It's a private list read only by the maintainers, but anybody can post, after moderation.) To make it easier for us to help you please enter detailed information below. - type: textarea attributes: label: Steps to reproduce placeholder: | 1. 2. 3. 4. validations: required: true - type: textarea attributes: label: Expected behaviour placeholder: A clear and concise description of what you expected to happen. validations: required: true - type: input attributes: label: Version of Vim description: > Including patch level, use ":version" to see it [e.g. 8.2.1234] validations: required: true - type: textarea attributes: label: Environment description: > OS [e.g. Ubuntu 21.10], terminal [e.g. GNOME Terminal 3.38.1], value of $TERM, shell [e.g. bash 5.1.8]; anything that might matter placeholder: | Operating system: Terminal: Value of $TERM: Shell: validations: required: true - type: textarea attributes: label: Logs and stack traces placeholder: Insert log or other text here (if necessary) render: shell