NA

CVE-2023-0054

Published: 04/01/2023 Updated: 12/06/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Out-of-bounds Write in GitHub repository vim/vim before 9.0.1145.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vim vim

Vendor Advisories

Debian Bug report logs - #1031875 vim: CVE-2023-0054 Package: src:vim; Maintainer for src:vim is Debian Vim Maintainers <team+vim@trackerdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Fri, 24 Feb 2023 16:09:03 UTC Severity: important Tags: security, upstream Reply or subscribe to this bug ...
A heap buffer overflow vulnerability was found in vim's ins_compl_infercase_gettext() function of the src/insexpandc file This flaw occurs when vim tries to access uninitialized memory when completing a long line This flaw allows an attacker to trick a user into opening a specially crafted file, triggering a heap-based buffer overflow that cause ...
A heap buffer overflow vulnerability was found in vim's ins_compl_infercase_gettext() function of the src/insexpandc file This flaw occurs when vim tries to access uninitialized memory when completing a long line This flaw allows an attacker to trick a user into opening a specially crafted file, triggering a heap-based buffer overflow that cause ...
Description<!---->An out-of-bounds write flaw was found in Vim, in the do_string_sub function in the evalc file The issue occurs because of an invalid memory access due to a missing check of the return value of the vim_regsub function when a specially crafted input is processed This flaw allows an attacker who can trick a user into opening a spe ...
Severity Unknown Remote Unknown Type Unknown Description AVG-2843 vim 901224-1 901225-1 Unknown Unknown ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the&nbsp;Apple security updates&nbsp;page Apple security documents reference vulnerabilities by&nbsp;CVE-ID&nbsp ...