Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 12

Количество 12

ubuntu логотип

CVE-2024-41965

около 2 лет назад

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.

CVSS3: 4.2
EPSS: Низкий
redhat логотип

CVE-2024-41965

около 2 лет назад

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2024-41965

около 2 лет назад

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.

CVSS3: 4.2
EPSS: Низкий
msrc логотип

CVE-2024-41965

около 2 лет назад

CVSS3: 4.2
EPSS: Низкий
debian логотип

CVE-2024-41965

около 2 лет назад

Vim is an open source command line text editor. double-free in dialog_ ...

CVSS3: 4.2
EPSS: Низкий
fstec логотип

BDU:2024-06299

около 2 лет назад

Уязвимость компонента File Name Handler текстового редактора vim, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 4.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02228-1

около 1 года назад

Security update for vim

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02227-1

около 1 года назад

Security update for vim

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02226-1

около 1 года назад

Security update for vim

EPSS: Низкий
redos логотип

ROS-20240827-10

около 2 лет назад

Множественные уязвимости vim

CVSS3: 4.5
EPSS: Низкий
altlinux логотип

ALT-PU-2024-17456

больше 1 года назад

ALT-PU-2024-17456: package `vim` update to version 9.1.0917-alt2

CVSS3: 5.5
EPSS: Низкий
altlinux логотип

ALT-PU-2024-17154

почти 2 года назад

ALT-PU-2024-17154: package `vim` update to version 9.1.0917-alt3

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-41965

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.

CVSS3: 4.2
0%
Низкий
около 2 лет назад
redhat логотип
CVE-2024-41965

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.

CVSS3: 4.2
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-41965

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.

CVSS3: 4.2
0%
Низкий
около 2 лет назад
msrc логотип
CVSS3: 4.2
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-41965

Vim is an open source command line text editor. double-free in dialog_ ...

CVSS3: 4.2
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-06299

Уязвимость компонента File Name Handler текстового редактора vim, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 4.2
0%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2025:02228-1

Security update for vim

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02227-1

Security update for vim

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02226-1

Security update for vim

около 1 года назад
redos логотип
ROS-20240827-10

Множественные уязвимости vim

CVSS3: 4.5
около 2 лет назад
altlinux логотип
ALT-PU-2024-17456

ALT-PU-2024-17456: package `vim` update to version 9.1.0917-alt2

CVSS3: 5.5
больше 1 года назад
altlinux логотип
ALT-PU-2024-17154

ALT-PU-2024-17154: package `vim` update to version 9.1.0917-alt3

CVSS3: 5.5
почти 2 года назад

Уязвимостей на страницу