Описание
vim is vulnerable to Use After Free
It was found that vim was vulnerable to use-after-free flaw in win_linetabsize(). Sourcing a specially crafted file in vim could crash the vim process or possibly lead to other undefined behaviors.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | vim | Out of support scope | ||
| Red Hat Enterprise Linux 7 | vim | Out of support scope | ||
| Red Hat Enterprise Linux 9 | vim | Not affected | ||
| Red Hat Enterprise Linux 8 | vim | Fixed | RHSA-2022:0366 | 01.02.2022 |
| Red Hat Enterprise Linux 8 | vim | Fixed | RHSA-2022:0366 | 01.02.2022 |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2039685vim: use-after-free in win_linetabsize()
EPSS
Процентиль: 68%
0.00555
Низкий
7.8 High
CVSS3
EPSS
Процентиль: 68%
0.00555
Низкий
7.8 High
CVSS3