PT-2022-3437 · Vim+7 · Vim+7

Brammool

·

Published

2022-06-23

·

Updated

2024-06-15

·

CVE-2022-2183

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Vim versions prior to 8.2
Description The issue is related to an out-of-bounds read in the Vim text editor, specifically in the get lisp indent() function. This could allow a remote attacker to gain unauthorized access to protected information. The estimated number of potentially affected devices worldwide is not specified.
Recommendations For versions prior to 8.2, update to version 8.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the indent.c file or disabling the get lisp indent() function until a patch is available.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2150
ALT-PU-2022-2272
ALT-PU-2022-2420
ALT-PU-2022-2430
AZL-9970
BDU:2022-04215
CVE-2022-2183
MGASA-2022-0430
OESA-2022-1749
OPENSUSE-SU-2022_3229-1
OPENSUSE-SU-2024:12337-1
SUSE-SU-2022:3229-1
SUSE-SU-2022:4619-1
USN-5723-1
USN-5995-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Red Os
Suse
Ubuntu
Vim