Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2023-48236

Опубликовано: 21 нояб. 2023
Источник: msrc
CVSS3: 4.3
EPSS Низкий

Описание

overflow in get_number in vim

EPSS

Процентиль: 18%
0.0006
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 2.8
ubuntu
около 2 лет назад

Vim is an open source command line text editor. When using the z= command, the user may overflow the count with values larger than MAX_INT. Impact is low, user interaction is required and a crash may not even happen in all situations. This vulnerability has been addressed in commit `73b2d379` which has been included in release version 9.0.2111. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 4.3
redhat
около 2 лет назад

Vim is an open source command line text editor. When using the z= command, the user may overflow the count with values larger than MAX_INT. Impact is low, user interaction is required and a crash may not even happen in all situations. This vulnerability has been addressed in commit `73b2d379` which has been included in release version 9.0.2111. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 2.8
nvd
около 2 лет назад

Vim is an open source command line text editor. When using the z= command, the user may overflow the count with values larger than MAX_INT. Impact is low, user interaction is required and a crash may not even happen in all situations. This vulnerability has been addressed in commit `73b2d379` which has been included in release version 9.0.2111. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 2.8
debian
около 2 лет назад

Vim is an open source command line text editor. When using the z= comm ...

CVSS3: 4.3
fstec
около 2 лет назад

Уязвимость функции get_number() текстового редактора vim, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 18%
0.0006
Низкий

4.3 Medium

CVSS3