Related Vulnerabilities: CVE-2022-1769  

Buffer Over-read in GitHub repository vim/vim prior to 8.2.

Description

The MITRE CVE dictionary describes this issue as:

Buffer Over-read in GitHub repository vim/vim prior to 8.2.

Mitigation

Untrusted vim scripts with -s [scriptin] are not recommended to run.

Additional Information

  • Bugzilla 2087594: CVE-2022-1769 vim: a buffer over-read found in scriptfile.c
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2022-1769