Related Vulnerabilities: CVE-2022-1616  

Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution

Description

The MITRE CVE dictionary describes this issue as:

Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution

Additional Information

  • Bugzilla 2083017: CVE-2022-1616 vim: heap-buffer-overflow in append_command of src/ex_docmd.c
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2022-1616