๐Ÿ” CVE Alert

CVE-2023-2426

MEDIUM 6.8

Use of Out-of-range Pointer Offset in vim/vim

CVSS Score
6.8
EPSS Score
0.0%
EPSS Percentile
0th

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 9.0.1499.

CWE CWE-823
Vendor vim
Product vim/vim
Published Apr 29, 2023
Last Updated Oct 15, 2024
Stay Ahead of the Next One

Get instant alerts for vim vim/vim

Be the first to know when new medium vulnerabilities affecting vim vim/vim are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L

Affected Versions

vim / vim/vim
unspecified < 9.0.1499

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
huntr.dev: https://huntr.dev/bounties/3451be4c-91c8-4d08-926b-cbff7396f425 github.com: https://github.com/vim/vim/commit/caf642c25de526229264cab9425e7c9979f3509b lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LOJP6M7ZTKZQYOGVOOAY6TIE6ACBJL55/ lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PCLJN4QINITA3ZASKLEJ64C5TFNKELMO/ support.apple.com: https://support.apple.com/kb/HT213844 support.apple.com: https://support.apple.com/kb/HT213845