Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
- CVSS 3.0 Base Score: 5.7
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade vim | Aug 22, 2024 | Jan 30, 2022 |
| Amazon_linux_2023 | — | Upgrade vim-filesystemUpgrade vim-default-editorUpgrade vim-enhanced-debuginfoUpgrade vim-enhancedUpgrade vim-debuginfoUpgrade vim-dataUpgrade vim-debugsourceUpgrade vim-commonUpgrade vim-minimal-debuginfoUpgrade vim-common-debuginfoUpgrade vim-minimal | Feb 17, 2025 | Jan 30, 2022 |
| Debian | — | Upgrade vim | Jul 30, 2024 | Jan 30, 2022 |
| Gentoo Linux | — | Upgrade app-editors/vim-core.Upgrade app-editors/gvim.Upgrade app-editors/vim. | Aug 22, 2022 | Jan 30, 2022 |
| Suse | — | Upgrade gvimUpgrade vim-smallUpgrade vimUpgrade vim-dataUpgrade vim-data-common | Oct 26, 2022 | Jan 30, 2022 |
| Ubuntu | — | Upgrade vim-gtk3Upgrade vimUpgrade vim-noxUpgrade xxdUpgrade vim-athenaUpgrade vim-tiny | Jul 4, 2023 | Jan 30, 2022 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jan 30, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub