Логотип exploitDog
bind:"CVE-2024-43802"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-43802"

Количество 8

Количество 8

ubuntu логотип

CVE-2024-43802

10 месяцев назад

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
EPSS: Низкий
redhat логотип

CVE-2024-43802

10 месяцев назад

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2024-43802

10 месяцев назад

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error cond

CVSS3: 4.5
EPSS: Низкий
msrc логотип

CVE-2024-43802

8 месяцев назад

CVSS3: 4.5
EPSS: Низкий
debian логотип

CVE-2024-43802

10 месяцев назад

Vim is an improved version of the unix vi text editor. When flushing t ...

CVSS3: 4.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0723-1

4 месяца назад

Security update for vim

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0722-1

4 месяца назад

Security update for vim

EPSS: Низкий
redos логотип

ROS-20241017-09

8 месяцев назад

Множественные уязвимости vim

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error c...

CVSS3: 4.5
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but does not check whether there is enough space left in the buffer to handle the next characters. So this may lead to the tb_off position within the typebuf variable to point outside of the valid buffer size, which can then later lead to a heap-buffer overflow in e.g. ins_typebuf(). Therefore, when flushing the typeahead buffer, check if there is enough space left before advancing the off position. If not, fall back to flush current typebuf contents. It's not quite clear yet, what can lead to this situation. It seems to happen when error messages occur (which will cause Vim to flush the typeahead buffer) in comnination with several long mappgins and so it may eventually move the off position out of a valid buffer size. Impact is low since it is not easily reproducible and requires to have several mappings active and run into some error cond

CVSS3: 4.5
0%
Низкий
10 месяцев назад
msrc логотип
CVSS3: 4.5
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-43802

Vim is an improved version of the unix vi text editor. When flushing t ...

CVSS3: 4.5
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0723-1

Security update for vim

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:0722-1

Security update for vim

4 месяца назад
redos логотип
ROS-20241017-09

Множественные уязвимости vim

CVSS3: 5.5
8 месяцев назад

Уязвимостей на страницу