Heap-based Buffer Overflow in vim/vim
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 6.1epss 1.3%
exploitation probability
1.3%top 30% of all CVEs
observed exploitation
nono source reports it
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Affected products
vim · vim/vimReferences
http://seclists.org/fulldisclosure/2022/Oct/28http://seclists.org/fulldisclosure/2022/Oct/41http://seclists.org/fulldisclosure/2022/Oct/43https://github.com/vim/vim/commit/85b6747abc15a7a81086db31289cf1b8b17e6cb1https://huntr.dev/bounties/a3192d90-4f82-4a67-b7a6-37046cc88defhttps://lists.debian.org/debian-lts-announce/2022/03/msg00018.htmlhttps://lists.debian.org/debian-lts-announce/2022/11/msg00009.htmlhttps://lists.debian.org/debian-lts-announce/2025/03/msg00023.htmlhttps://security.gentoo.org/glsa/202208-32https://support.apple.com/kb/HT213444https://support.apple.com/kb/HT213488