A new updated vim package within CloudLinux OS 6 ELS has been scheduled for gradual rollout from our production repository.
Rollout slot: 6
Rolled out to: 0.1%
ETA for 100% rollout: December 29
Changelog
vim 7.4.629-5.2.el6.tuxcare.els4
- CVE-2021-3974: fix using freed memory with regexp using a mark
- CVE-2021-3984: fix illegal memory access when C-indenting
- CVE-2021-3973: fix crash when using CTRL-W f without finding a file name
- CVE-2021-4019: fix buffer overflow with long help argument
- CVE-2021-4069: fix using freed memory in open command
Update command
yum update vim*
Immediate update (via bypass)
yum update vim* --enablerepo=cloudlinux-rollout-6-bypass