CVE-2022-1720
20.06.2022, 15:15
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vim | vim | 𝑥 < 8.2.4956 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| apple | macos | 𝑥 < 11.7 |
| apple | macos | 12.0 ≤ 𝑥 < 12.6 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| gvim |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||
| vim |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||
| vim-data |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||
| vim-data-common |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||
| vim-small |
|
Amazon Linux Releases
Amazon Package | |||||||
|---|---|---|---|---|---|---|---|
| vim-X11 |
| ||||||
| vim-common |
| ||||||
| vim-common-debuginfo |
| ||||||
| vim-data |
| ||||||
| vim-debuginfo |
| ||||||
| vim-debugsource |
| ||||||
| vim-default-editor |
| ||||||
| vim-enhanced |
| ||||||
| vim-enhanced-debuginfo |
| ||||||
| vim-filesystem |
| ||||||
| vim-minimal |
| ||||||
| vim-minimal-debuginfo |
|
Common Weakness Enumeration
References