APPLE-SA-2008-10-09Vendor advisory
http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html CVE-2008-2712
Vim 7.x - Vim Script Multiple Command Execution Vulnerabilities
Record summary
CVE-2008-2712 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Vim 7.1.314, 6.4, and other versions allows user-assisted remote attackers to execute arbitrary commands via Vim scripts that do not properly sanitize inputs before invoking the execute or system functions, as demonstrated using (1) filetype.vim, (3) xpm.vim, (4) gzip_vim, and (5) netrw. NOTE: the originally reported version was 7.1.314, but the researcher actually found this set of issues in 7.1.298. NOTE: the zipplugin issue (originally vector 2 in this identifier) has been subsumed by CVE-2008-3075.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBVim 7.x - Vim Script Multiple Command Execution VulnerabilitiesExploitDB exploitby Jan MinarNot analyzed1 file
References
Showing 12 of 41APPLE-SA-2010-03-29-1Vendor advisory
http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html SUSE-SR:2009:007Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00004.html 20080701 Re: Collection of Vulnerabilities in Fully Patched Vim 7.1mailing list
http://marc.info/?l=bugtraq&m=121494431426308&w=2 30731Third-party advisory
http://secunia.com/advisories/30731 32222Third-party advisory
http://secunia.com/advisories/32222 32858Third-party advisory
http://secunia.com/advisories/32858 32864Third-party advisory
http://secunia.com/advisories/32864 33410Third-party advisory
http://secunia.com/advisories/33410 34418Third-party advisory
http://secunia.com/advisories/34418 3951Third-party advisory
http://securityreason.com/securityalert/3951 support.apple.comConfirmation
http://support.apple.com/kb/HT3216