Red Hat Customer Portal

Skip to main content

CVE-2007-2438

Impact:
Moderate
Public Date:
2007-04-26
Bugzilla:
238734: CVE-2007-2438 vim-7 modeline security issue

The MITRE CVE dictionary describes this issue as:

The sandbox for vim allows dangerous functions such as (1) writefile, (2) feedkeys, and (3) system, which might allow user-assisted attackers to execute shell commands and write files via modelines.

Find out more about CVE-2007-2438 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 5 (vim) RHSA-2007:0346 2007-05-09