CVE-2022-0407

Related Vulnerabilities: CVE-2022-0407  

Heap-based Buffer Overflow in Conda vim prior to 8.2.

Description

The MITRE CVE dictionary describes this issue as:

Heap-based Buffer Overflow in Conda vim prior to 8.2.

Mitigation

Untrusted vim scripts with -s [scriptin] are not recommended to run.

Additional Information

  • Bugzilla 2049007: CVE-2022-0407 vim: heap-based buffer overflow on read in yank_copy_line
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2022-0407