Логотип exploitDog
bind: "CVE-2024-43802"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-43802"

Количество 9

Количество 9

ubuntu логотип

CVE-2024-43802

больше 1 года назад

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
EPSS: Низкий
redhat логотип

CVE-2024-43802

больше 1 года назад

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2024-43802

больше 1 года назад

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error cond

CVSS3: 4.5
EPSS: Низкий
msrc логотип

CVE-2024-43802

около 1 года назад

CVSS3: 4.5
EPSS: Низкий
debian логотип

CVE-2024-43802

больше 1 года назад

Vim is an improved version of the unix vi text editor. When flushing t ...

CVSS3: 4.5
EPSS: Низкий
fstec логотип

BDU:2025-11469

больше 1 года назад

Уязвимость функции ins_typebuf() текстового редактора Vim, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации, нарушить её целостность, а также вызвать отказ в обслуживании

CVSS3: 4.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0723-1

10 месяцев назад

Security update for vim

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0722-1

10 месяцев назад

Security update for vim

EPSS: Низкий
redos логотип

ROS-20241017-09

около 1 года назад

Множественные уязвимости vim

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error cond

CVSS3: 4.5
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 4.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing t ...

CVSS3: 4.5
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2025-11469

Уязвимость функции ins_typebuf() текстового редактора Vim, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации, нарушить её целостность, а также вызвать отказ в обслуживании

CVSS3: 4.5
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0723-1

Security update for vim

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0722-1

Security update for vim

10 месяцев назад
redos логотип
ROS-20241017-09

Множественные уязвимости vim

CVSS3: 5.5
около 1 года назад

Уязвимостей на страницу