6.8
CVSSv2

CVE-2022-1160

Published: 30/03/2022 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 606
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

heap buffer overflow in get_one_sourceline in GitHub repository vim/vim before 8.2.4647.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vim vim

fedoraproject fedora 34

fedoraproject fedora 35

fedoraproject fedora 36

Vendor Advisories

A flaw was found in vim The vulnerability occurs due to a crash when recording and using Select mode and leads to an out-of-bounds read This flaw allows an attacker to input a specially crafted file, leading to a crash or code execution (CVE-2022-0393) A flaw was found in vim The vulnerability occurs due to stack corruption when looking for spe ...
A heap based out-of-bounds write flaw was found in vim's opsc This flaw allows an attacker to trick a user to open a crafted file triggering an out-of-bounds write This vulnerability is capable of crashing software, modify memory, and possible code execution (CVE-2022-0261) A flaw was found in vim The vulnerability occurs due to reading beyon ...
"source" can read past end of copied line resulting in heap buffer overflow in get_one_sourceline in vim prior to 824647 ...
A flaw was found in vim The vulnerability occurs due to a crash when recording and using Select mode and leads to an out-of-bounds read This flaw allows an attacker to input a specially crafted file, leading to a crash or code execution (CVE-2022-0393) A flaw was found in vim The vulnerability occurs due to stack corruption when looking for spe ...