vulnerability
Oracle Linux: CVE-2022-1420: ELSA-2022-5242: vim security update (MODERATE) (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
6 | (AV:L/AC:L/Au:N/C:P/I:N/A:C) | 04/21/2022 | 07/22/2024 | 11/27/2024 |
Severity
6
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:C)
Published
04/21/2022
Added
07/22/2024
Modified
11/27/2024
Description
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4774.
A vulnerability was found in Vim. The issue occurs when using a number in a string for the lambda name, triggering an out-of-range pointer offset vulnerability. This flaw allows an attacker to trick a user into opening a crafted script containing an argument as a number and then using it as a string pointer to access any memory location, causing an application to crash and possibly access some memory.
A vulnerability was found in Vim. The issue occurs when using a number in a string for the lambda name, triggering an out-of-range pointer offset vulnerability. This flaw allows an attacker to trick a user into opening a crafted script containing an argument as a number and then using it as a string pointer to access any memory location, causing an application to crash and possibly access some memory.
Solution(s)
oracle-linux-upgrade-vim-commonoracle-linux-upgrade-vim-enhancedoracle-linux-upgrade-vim-filesystemoracle-linux-upgrade-vim-minimaloracle-linux-upgrade-vim-x11

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.