ZeroHour

CVE-2022-1720

PoC
CVSS 3.1
7.8 high
EPSS
2%p81
Published
()
Modified
Description

Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

Vendors
vimdebianfedoraprojectapple
Products
vim, debian linux, fedora, macos
Weakness
CWE-126, CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.