CVE-2022-1796 – Use After Free in vim/vim
https://notcve.org/view.php?id=CVE-2022-1796
Use After Free in GitHub repository vim/vim prior to 8.2.4979. Un Uso de Memoria Previamente Liberada en el repositorio de GitHub vim/vim versiones anteriores a 8.2.4979 • https://github.com/vim/vim/commit/28d032cc688ccfda18c5bbcab8b50aba6e18cde5 https://huntr.dev/bounties/f6739b58-49f9-4056-a843-bf76bbc1253e https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 • CWE-416: Use After Free •
CVE-2022-1785 – Out-of-bounds Write in vim/vim
https://notcve.org/view.php?id=CVE-2022-1785
Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.4977. Una Escritura Fuera de Límites en el repositorio GitHub vim/vim versiones anteriores a 8.2.4977 A flaw was found in vim. The vulnerability occurs due to Illegal memory access and leads to an out-of-bounds write vulnerability in the ex_cmds function. This flaw allows an attacker to input a specially crafted file, leading to a crash or code execution. • https://github.com/vim/vim/commit/e2bd8600b873d2cd1f9d667c28cba8b1dba18839 https://huntr.dev/bounties/8c969cba-eef2-4943-b44a-4e3089599109 https://lists.debian.org/debian-lts-announce/2022/11/msg00032.html https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 https://access.redhat.com/security/cve/CVE-2022-1785 https://bugzilla.redhat.com/show_bug.cgi?id=2088689 • CWE-787: Out-of-bounds Write •
CVE-2022-1771 – Uncontrolled Recursion in vim/vim
https://notcve.org/view.php?id=CVE-2022-1771
Uncontrolled Recursion in GitHub repository vim/vim prior to 8.2.4975. Recursión incontrolada en el repositorio de GitHub vim/vim anterior a 8.2.4975 • https://github.com/vim/vim/commit/51f0bfb88a3554ca2dde777d78a59880d1ee37a8 https://huntr.dev/bounties/faa74175-5317-4b71-a363-dfc39094ecbb https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 • CWE-674: Uncontrolled Recursion •
CVE-2022-1769 – Buffer Over-read in vim/vim
https://notcve.org/view.php?id=CVE-2022-1769
Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974. Un desbordamiento de búfer en el repositorio de GitHub vim/vim versiones anteriores a 8.2.4974 • http://seclists.org/fulldisclosure/2022/Oct/28 http://seclists.org/fulldisclosure/2022/Oct/41 https://github.com/vim/vim/commit/4748c4bd64610cf943a431d215bb1aad51f8d0b4 https://huntr.dev/bounties/522076b2-96cb-4df6-a504-e6e2f64c171c https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BFAZTAT5CZC2R6KYDYA2HBAVEDSIX6MW https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IUPOLEX5GXC733HL4EFYMHFU7NISJJZG https://lists.fedoraproject.org/archives/list/package-anno • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •
CVE-2022-1735 – Classic Buffer Overflow in vim/vim
https://notcve.org/view.php?id=CVE-2022-1735
Classic Buffer Overflow in GitHub repository vim/vim prior to 8.2.4969. Un Desbordamiento de Búfer Clásico en el repositorio GitHub vim/vim versiones anteriores a 8.2.4969 • http://seclists.org/fulldisclosure/2022/Oct/28 http://seclists.org/fulldisclosure/2022/Oct/41 https://github.com/vim/vim/commit/7ce5b2b590256ce53d6af28c1d203fb3bc1d2d97 https://huntr.dev/bounties/c9f85608-ff11-48e4-933d-53d1759d44d9 https://security.gentoo.org/glsa/202208-32 https://security.gentoo.org/glsa/202305-16 https://support.apple.com/kb/HT213488 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •