« List of all CVEs

CVE-2022-1619

Heap-based Buffer Overflow in function cmdline_erase_chars in vim/vim

Published: 5/8/2022 Last updated: 8/3/2024 Reserved: 5/7/2022

Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerabilities are capable of crashing software, modify memory, and possible remote execution

CNA assigner: @huntrdev (c09c270a-b464-47c1-9133-acb35b22c19a) Requested by: n/a

Metrics

Version Score Severity Vector String
3.0 6.1 Medium CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

Opam packages affected (1)

conf-vim

Products affected (1)

Product Vendor Version
vim/vim vim QCA6574A

References (26)