Описание
Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | pending | |
| esm-infra-legacy/trusty | released | 2:7.4.052-1ubuntu3.1+esm23 |
| esm-infra/bionic | released | 2:8.0.1453-1ubuntu1.13+esm14 |
| esm-infra/focal | released | 2:8.1.2269-1ubuntu5.32+esm2 |
| esm-infra/xenial | released | 2:7.4.1689-3ubuntu1.5+esm29 |
| jammy | released | 2:8.2.3995-1ubuntu2.26 |
| noble | released | 2:9.1.0016-1ubuntu7.10 |
| questing | released | 2:9.1.0967-1ubuntu6.1 |
| upstream | released | 9.2.0077 |
Показывать по
Ссылки на источники
EPSS
5.3 Medium
CVSS3
Связанные уязвимости
Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.
Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.
Vim is an open source, command line text editor. Versions prior to 9.2 ...
Уязвимость текстового редактора vim, связанная с переполнением буфера в динамической памяти, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
5.3 Medium
CVSS3