Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
- CVSS 3.0 Base Score: 5.7
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade vim | Aug 22, 2024 | Jan 30, 2022 |
| Amazon_linux_2023 | — | Upgrade vim-commonUpgrade vim-debugsourceUpgrade vim-minimal-debuginfoUpgrade vim-minimalUpgrade vim-common-debuginfoUpgrade vim-enhancedUpgrade vim-filesystemUpgrade vim-enhanced-debuginfoUpgrade vim-default-editorUpgrade vim-debuginfoUpgrade vim-data | Feb 17, 2025 | Jan 30, 2022 |
| Debian | — | Upgrade vim | Jul 30, 2024 | Jan 30, 2022 |
| Gentoo Linux | — | Upgrade app-editors/vim-core.Upgrade app-editors/vim.Upgrade app-editors/gvim. | Aug 22, 2022 | Jan 30, 2022 |
| Suse | — | Upgrade vim-data-commonUpgrade vimUpgrade gvimUpgrade vim-dataUpgrade vim-small | Oct 26, 2022 | Jan 30, 2022 |
| Ubuntu | — | Upgrade vim-gtk3Upgrade vimUpgrade vim-noxUpgrade vim-tinyUpgrade vim-athenaUpgrade xxd | Jul 4, 2023 | Jan 30, 2022 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jan 30, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub