From 9432a7000b36fc0612a3e12e2e92862f9a0e20d1 Mon Sep 17 00:00:00 2001 From: Thorsten Alteholz Date: Mon, 29 Nov 2021 00:03:15 +0100 Subject: mark CVE-2021-3903 as no-dsa for Stretch --- data/CVE/list.2021 | 1 + 1 file changed, 1 insertion(+) diff --git a/data/CVE/list.2021 b/data/CVE/list.2021 index 8090c4070a..621c7f81de 100644 --- a/data/CVE/list.2021 +++ b/data/CVE/list.2021 @@ -2917,6 +2917,7 @@ CVE-2021-3904 (grav is vulnerable to Improper Neutralization of Input During Web NOT-FOR-US: Grav CMS CVE-2021-3903 (vim is vulnerable to Heap-based Buffer Overflow ...) - vim 2:8.2.3565-1 + [stretch] - vim (Minor issue) NOTE: https://huntr.dev/bounties/35738a4f-55ce-446c-b836-2fb0b39625f8 NOTE: https://github.com/vim/vim/commit/777e7c21b7627be80961848ac560cb0a9978ff43 NOTE: PoC crashes starting with https://github.com/vim/vim/commit/8a7d6542b33e5d2b352262305c3bfdb2d14e1cf8 (v8.2.0149) -- cgit v1.2.3