Related Vulnerabilities: CVE-2021-3778  

vim before version 8.2.3409 is vulnerable to a heap-based buffer overflow when reading beyond the end of a line with an invalid UTF-8 character.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

vim before version 8.2.3409 is vulnerable to a heap-based buffer overflow when reading beyond the end of a line with an invalid UTF-8 character.

AVG-2371 gvim 8.2.3340-1 8.2.3412-1 Medium Fixed

AVG-2364 vim 8.2.3340-1 8.2.3412-1 Medium Fixed

https://huntr.dev/bounties/d9c17308-2c99-4f9f-a706-f7f72c24c273/
https://github.com/vim/vim/commit/65b605665997fad54ef39a93199e305af2fe4d7f