Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

ubuntu логотип

CVE-2024-41957

около 2 лет назад

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and freed. However a bit later, the quickfix list belonging to that window will also be cleared and if that quickfix list points to the same tagstack data, Vim will try to free it again, resulting in a double-free/use-after-free access exception. Impact is low since the user must intentionally execute vim with several non-default flags, but it may cause a crash of Vim. The issue has been fixed as of Vim patch v9.1.0647

CVSS3: 4.5
EPSS: Низкий
redhat логотип

CVE-2024-41957

около 2 лет назад

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and freed. However a bit later, the quickfix list belonging to that window will also be cleared and if that quickfix list points to the same tagstack data, Vim will try to free it again, resulting in a double-free/use-after-free access exception. Impact is low since the user must intentionally execute vim with several non-default flags, but it may cause a crash of Vim. The issue has been fixed as of Vim patch v9.1.0647

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2024-41957

около 2 лет назад

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and freed. However a bit later, the quickfix list belonging to that window will also be cleared and if that quickfix list points to the same tagstack data, Vim will try to free it again, resulting in a double-free/use-after-free access exception. Impact is low since the user must intentionally execute vim with several non-default flags, but it may cause a crash of Vim. The issue has been fixed as of Vim patch v9.1.0647

CVSS3: 4.5
EPSS: Низкий
msrc логотип

CVE-2024-41957

около 2 лет назад

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-41957

около 2 лет назад

Vim is an open source command line text editor. Vim < v9.1.0647 has do ...

CVSS3: 4.5
EPSS: Низкий
fstec логотип

BDU:2024-06478

около 2 лет назад

Уязвимость функции tagstack_clear_entry() файла src/alloc.c текстового редактора vim, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 4.5
EPSS: Низкий
redos логотип

ROS-20240827-10

около 2 лет назад

Множественные уязвимости vim

CVSS3: 4.5
EPSS: Низкий
altlinux логотип

ALT-PU-2024-17456

больше 1 года назад

ALT-PU-2024-17456: package `vim` update to version 9.1.0917-alt2

CVSS3: 5.5
EPSS: Низкий
altlinux логотип

ALT-PU-2024-17154

почти 2 года назад

ALT-PU-2024-17154: package `vim` update to version 9.1.0917-alt3

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-41957

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and freed. However a bit later, the quickfix list belonging to that window will also be cleared and if that quickfix list points to the same tagstack data, Vim will try to free it again, resulting in a double-free/use-after-free access exception. Impact is low since the user must intentionally execute vim with several non-default flags, but it may cause a crash of Vim. The issue has been fixed as of Vim patch v9.1.0647

CVSS3: 4.5
0%
Низкий
около 2 лет назад
redhat логотип
CVE-2024-41957

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and freed. However a bit later, the quickfix list belonging to that window will also be cleared and if that quickfix list points to the same tagstack data, Vim will try to free it again, resulting in a double-free/use-after-free access exception. Impact is low since the user must intentionally execute vim with several non-default flags, but it may cause a crash of Vim. The issue has been fixed as of Vim patch v9.1.0647

CVSS3: 4.5
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-41957

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and freed. However a bit later, the quickfix list belonging to that window will also be cleared and if that quickfix list points to the same tagstack data, Vim will try to free it again, resulting in a double-free/use-after-free access exception. Impact is low since the user must intentionally execute vim with several non-default flags, but it may cause a crash of Vim. The issue has been fixed as of Vim patch v9.1.0647

CVSS3: 4.5
0%
Низкий
около 2 лет назад
msrc логотип
CVSS3: 5.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-41957

Vim is an open source command line text editor. Vim < v9.1.0647 has do ...

CVSS3: 4.5
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-06478

Уязвимость функции tagstack_clear_entry() файла src/alloc.c текстового редактора vim, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 4.5
0%
Низкий
около 2 лет назад
redos логотип
ROS-20240827-10

Множественные уязвимости vim

CVSS3: 4.5
около 2 лет назад
altlinux логотип
ALT-PU-2024-17456

ALT-PU-2024-17456: package `vim` update to version 9.1.0917-alt2

CVSS3: 5.5
больше 1 года назад
altlinux логотип
ALT-PU-2024-17154

ALT-PU-2024-17154: package `vim` update to version 9.1.0917-alt3

CVSS3: 5.5
почти 2 года назад

Уязвимостей на страницу