CVE-2022-1785 – Out-of-bounds Write in vim/vim
https://notcve.org/view.php?id=CVE-2022-1785
Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.4977. Una Escritura Fuera de Límites en el repositorio GitHub vim/vim versiones anteriores a 8.2.4977 A flaw was found in vim. The vulnerability occurs due to Illegal memory access and leads to an out-of-bounds write vulnerability in the ex_cmds function. This flaw allows an attacker to input a specially crafted file, leading to a crash or code execution. • https://github.com/vim/vim/commit/e2bd8600b873d2cd1f9d667c28cba8b1dba18839 https://huntr.dev/bounties/8c969cba-eef2-4943-b44a-4e3089599109 https://lists.debian.org/debian-lts-announce/2022/11/msg00032.html https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 https://access.redhat.com/security/cve/CVE-2022-1785 https://bugzilla.redhat.com/show_bug.cgi?id=2088689 • CWE-787: Out-of-bounds Write •
CVE-2022-1796 – Use After Free in vim/vim
https://notcve.org/view.php?id=CVE-2022-1796
Use After Free in GitHub repository vim/vim prior to 8.2.4979. Un Uso de Memoria Previamente Liberada en el repositorio de GitHub vim/vim versiones anteriores a 8.2.4979 • https://github.com/vim/vim/commit/28d032cc688ccfda18c5bbcab8b50aba6e18cde5 https://huntr.dev/bounties/f6739b58-49f9-4056-a843-bf76bbc1253e https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 • CWE-416: Use After Free •
CVE-2022-1771 – Uncontrolled Recursion in vim/vim
https://notcve.org/view.php?id=CVE-2022-1771
Uncontrolled Recursion in GitHub repository vim/vim prior to 8.2.4975. Recursión incontrolada en el repositorio de GitHub vim/vim anterior a 8.2.4975 • https://github.com/vim/vim/commit/51f0bfb88a3554ca2dde777d78a59880d1ee37a8 https://huntr.dev/bounties/faa74175-5317-4b71-a363-dfc39094ecbb https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 • CWE-674: Uncontrolled Recursion •
CVE-2022-1733 – Heap-based Buffer Overflow in vim/vim
https://notcve.org/view.php?id=CVE-2022-1733
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968. Un desbordamiento de búfer en la región Heap de la memoria en el repositorio de GitHub vim/vim versiones anteriores a 8.2.4968 • http://seclists.org/fulldisclosure/2022/Oct/28 http://seclists.org/fulldisclosure/2022/Oct/41 https://github.com/vim/vim/commit/60ae0e71490c97f2871a6344aca61cacf220f813 https://huntr.dev/bounties/6ff03b27-472b-4bef-a2bf-410fae65ff0a https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BFAZTAT5CZC2R6KYDYA2HBAVEDSIX6MW https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IUPOLEX5GXC733HL4EFYMHFU7NISJJZG https://lists.fedoraproject.org/archives/list/package-anno • CWE-122: Heap-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2022-1769 – Buffer Over-read in vim/vim
https://notcve.org/view.php?id=CVE-2022-1769
Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974. Un desbordamiento de búfer en el repositorio de GitHub vim/vim versiones anteriores a 8.2.4974 • http://seclists.org/fulldisclosure/2022/Oct/28 http://seclists.org/fulldisclosure/2022/Oct/41 https://github.com/vim/vim/commit/4748c4bd64610cf943a431d215bb1aad51f8d0b4 https://huntr.dev/bounties/522076b2-96cb-4df6-a504-e6e2f64c171c https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BFAZTAT5CZC2R6KYDYA2HBAVEDSIX6MW https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IUPOLEX5GXC733HL4EFYMHFU7NISJJZG https://lists.fedoraproject.org/archives/list/package-anno • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •