CVE-2022-1619
08.05.2022, 10:15
Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerabilities are capable of crashing software, modify memory, and possible remote executionEnginsight
| Vendor | Product | Version |
|---|---|---|
| vim | vim | 𝑥 < 8.2.4899 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| netapp | hci_management_node | - |
| netapp | solidfire | - |
| apple | macos | 𝑥 < 13.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
- CWE-122 - Heap-based Buffer OverflowA heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
- CWE-787 - Out-of-bounds WriteThe software writes data past the end, or before the beginning, of the intended buffer.
References