PT-2023-5101 · Vim+7 · Vim+7

Published

2023-09-04

·

Updated

2024-04-15

·

CVE-2023-4750

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions vim versions prior to 9.0.1857
Description The issue is related to a use-after-free problem in the vim text editor, which can allow an attacker to execute arbitrary code by exploiting the vulnerability. This is a result of improper memory management.
Recommendations For versions prior to 9.0.1857, update to version 9.0.1857 or later to resolve the issue. As a temporary workaround, consider restricting the use of the vulnerable component until a patch is available.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

ALT-PU-2023-5538
ALT-PU-2023-5553
ALT-PU-2023-5877
ALT-PU-2023-5879
AZL-28658
BDU:2023-05667
CVE-2023-4750
ECHO-BDC1-E1E7-18B1
MGASA-2023-0269
OESA-2023-1653
OPENSUSE-SU-2024_1287-1
SUSE-SU-2024:0783-1
SUSE-SU-2024:0871-1
SUSE-SU-2024:1287-1
SUSE-SU-2024_0783-1
SUSE-SU-2024_0871-1
SUSE-SU-2024_1287-1
USN-6452-1

Affected Products

Alt Linux
Debian
Linuxmint
Apple Macos
Red Os
Suse
Ubuntu
Vim