Описание
vim is vulnerable to Out-of-bounds Read
It was found that vim was vulnerable to an out-of-bound read flaw in getvcol(). A specially crafted file could be used to, when opened in vim, disclose some of the process's internal memory.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | vim | Out of support scope | ||
| Red Hat Enterprise Linux 7 | vim | Out of support scope | ||
| Red Hat Enterprise Linux 9 | vim | Not affected | ||
| Red Hat Enterprise Linux 8 | vim | Fixed | RHSA-2022:0366 | 01.02.2022 |
| Red Hat Enterprise Linux 8 | vim | Fixed | RHSA-2022:0366 | 01.02.2022 |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2039687vim: out-of-bound read in getvcol()
EPSS
Процентиль: 68%
0.00564
Низкий
5.5 Medium
CVSS3
EPSS
Процентиль: 68%
0.00564
Низкий
5.5 Medium
CVSS3