PT-2022-7566 · Vim+5 · Vim+5

Brammool

·

Published

2022-09-20

·

Updated

2023-10-09

·

CVE-2022-3256

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions vim/vim versions prior to 9.0.0530
Description The issue is related to a Use After Free vulnerability in the mark.c component of the Vim text editor, which allows an attacker to access confidential data, compromise its integrity, and cause a denial of service.
Recommendations For versions prior to 9.0.0530, update to version 9.0.0530 or later to resolve the issue.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2828
ALT-PU-2022-2911
ALT-PU-2022-2914
ALT-PU-2022-3192
AZL-11003
BDU:2024-07322
CVE-2022-3256
DLA-3204-1
MGASA-2022-0430
OESA-2022-1975
USN-5775-1
USN-6420-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Ubuntu
Vim