PT-2022-3442 · Vim+8 · Vim+8

Brammool

·

Published

2022-06-19

·

Updated

2024-06-15

·

CVE-2022-2126

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Vim versions prior to 8.2
Description The issue is related to an out-of-bounds read in the suggest trie walk() function of the Vim text editor. This could allow a remote attacker to gain unauthorized access to protected information. The problem was addressed with improved checks.
Recommendations For versions prior to 8.2, update to version 8.2 or later to resolve the issue. As a temporary workaround, consider restricting the use of the suggest trie walk() function until a patch is available.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2150
ALT-PU-2022-2272
ALT-PU-2022-2420
ALT-PU-2022-2430
AZL-9933
BDU:2022-04220
CVE-2022-2126
DLA-3053-1
MGASA-2022-0430
OESA-2022-1740
OPENSUSE-SU-2022_3229-1
OPENSUSE-SU-2024:12337-1
SUSE-SU-2022:3229-1
SUSE-SU-2022:4619-1
USN-5723-1
USN-5995-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Apple Macos
Red Os
Suse
Ubuntu
Vim