NA

CVE-2022-3153

Published: 08/09/2022 Updated: 03/05/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

NULL Pointer Dereference in GitHub repository vim/vim before 9.0.0404.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vim vim

Vendor Advisories

A heap buffer overflow vulnerability was found in vim's ins_compl_infercase_gettext() function of the src/insexpandc file This flaw occurs when vim tries to access uninitialized memory when completing a long line This flaw allows an attacker to trick a user into opening a specially crafted file, triggering a heap-based buffer overflow that cause ...
NULL Pointer Dereference in GitHub repository vim/vim prior to 900404 ...
A use-after-free vulnerability was found in vim's do_cmdline() function of the src/ex_docmdc file The issue triggers when an invalid line number on :for is ignored This flaw allows an attacker to trick a user into opening a specially crafted file, triggering use-after-free that causes an application to crash, possibly executing code and corrupti ...