Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-20786

Опубликовано: 24 фев. 2019
Источник: debian
EPSS Низкий

Описание

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
vimfixed2:8.1.0693-1package
vimnot-affectedstretchpackage
vimnot-affectedjessiepackage
libvtermunfixedpackage

Примечания

  • Introduced by: https://github.com/vim/vim/commit/e4f25e4a8db2c8a8a71a4ba2a68540b3ab341e42 (v8.0.0693)

  • Fixed by: https://github.com/vim/vim/commit/cd929f7ba8cc5b6d6dcf35c8b34124e969fed6b8 (v8.1.0633)

  • MISC:https://github.com/vim/vim/issues/3711

  • No security impact

EPSS

Процентиль: 55%
0.00322
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

CVSS3: 5.3
redhat
около 7 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

CVSS3: 7.5
nvd
почти 7 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

CVSS3: 7.5
github
больше 3 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

EPSS

Процентиль: 55%
0.00322
Низкий