Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-29768

Опубликовано: 13 мар. 2025
Источник: debian
EPSS Низкий

Описание

Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an archive with Vim and then press 'x' on such a strange filename. The issue has been fixed as of Vim patch v9.1.1198.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
vimfixed2:9.1.1230-1package
vimno-dsabookwormpackage
vimnot-affectedbullseyepackage

Примечания

  • https://github.com/vim/vim/security/advisories/GHSA-693p-m996-3rmf

  • https://github.com/vim/vim/commit/f209dcd3defb95bae21b2740910e6aa7bb940531 (v9.1.1198)

EPSS

Процентиль: 21%
0.00065
Низкий

Связанные уязвимости

CVSS3: 4.4
ubuntu
3 месяца назад

Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an archive with Vim and then press 'x' on such a strange filename. The issue has been fixed as of Vim patch v9.1.1198.

CVSS3: 4.4
redhat
3 месяца назад

Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an archive with Vim and then press 'x' on such a strange filename. The issue has been fixed as of Vim patch v9.1.1198.

CVSS3: 4.4
nvd
3 месяца назад

Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an archive with Vim and then press 'x' on such a strange filename. The issue has been fixed as of Vim patch v9.1.1198.

CVSS3: 4.4
msrc
3 месяца назад

Описание отсутствует

CVSS3: 4.4
fstec
3 месяца назад

Уязвимость текстового редактора vim, связанная с внедрением или модификацией аргументов, позволяющая нарушителю получить доступ к конфиденциальной информации

EPSS

Процентиль: 21%
0.00065
Низкий