
CVE-2023-1170 – Heap-based Buffer Overflow in vim/vim
https://notcve.org/view.php?id=CVE-2023-1170
03 Mar 2023 — Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376. • https://github.com/vim/vim/commit/1c73b65229c25e3c1fd8824ba958f7cc4d604f9c • CWE-122: Heap-based Buffer Overflow •

CVE-2023-1127 – Divide By Zero in vim/vim
https://notcve.org/view.php?id=CVE-2023-1127
01 Mar 2023 — Divide By Zero in GitHub repository vim/vim prior to 9.0.1367. • https://github.com/vim/vim/commit/e0f869196930ef5f25a0ac41c9215b09c9ce2d3c • CWE-369: Divide By Zero •

CVE-2023-0512 – Divide By Zero in vim/vim
https://notcve.org/view.php?id=CVE-2023-0512
26 Jan 2023 — Divide By Zero in GitHub repository vim/vim prior to 9.0.1247. macOS Ventura 13.3 addresses buffer overflow, bypass, code execution, integer overflow, out of bounds read, out of bounds write, and use-after-free vulnerabilities. • http://seclists.org/fulldisclosure/2023/Mar/17 • CWE-369: Divide By Zero •

CVE-2023-0433 – Heap-based Buffer Overflow in vim/vim
https://notcve.org/view.php?id=CVE-2023-0433
21 Jan 2023 — Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225. Desbordamiento de búfer de almacenamiento dinámico en el repositorio de GitHub vim/vim anterior a 9.0.1225. It was discovered that Vim was not properly performing memory management operations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. • http://seclists.org/fulldisclosure/2023/Mar/17 • CWE-122: Heap-based Buffer Overflow •

CVE-2023-0288 – Heap-based Buffer Overflow in vim/vim
https://notcve.org/view.php?id=CVE-2023-0288
13 Jan 2023 — Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189. It was discovered that Vim was not properly performing memory management operations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10. It was discovered that Vim was not properly performing memory management operations. • http://seclists.org/fulldisclosure/2023/Mar/17 • CWE-122: Heap-based Buffer Overflow •

CVE-2023-0049 – Out-of-bounds Read in vim/vim
https://notcve.org/view.php?id=CVE-2023-0049
04 Jan 2023 — Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143. Lectura fuera de los límites en el repositorio de GitHub vim/vim, afectando a las versiones anteriores a la 9.0.1143. It was discovered that Vim was not properly performing memory management operations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10. • http://seclists.org/fulldisclosure/2023/Mar/17 • CWE-125: Out-of-bounds Read •

CVE-2023-0051 – Heap-based Buffer Overflow in vim/vim
https://notcve.org/view.php?id=CVE-2023-0051
04 Jan 2023 — Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144. It was discovered that Vim was not properly performing memory management operations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10. It was discovered that Vim was not properly performing memory management operations. • http://seclists.org/fulldisclosure/2023/Mar/17 • CWE-122: Heap-based Buffer Overflow •

CVE-2023-0054 – Out-of-bounds Write in vim/vim
https://notcve.org/view.php?id=CVE-2023-0054
04 Jan 2023 — Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1145. It was discovered that Vim was not properly performing memory management operations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10. It was discovered that Vim was not properly performing memory management operations. • http://seclists.org/fulldisclosure/2023/Mar/17 • CWE-787: Out-of-bounds Write •

CVE-2022-4292 – Use After Free in vim/vim
https://notcve.org/view.php?id=CVE-2022-4292
05 Dec 2022 — Use After Free in GitHub repository vim/vim prior to 9.0.0882. Use After Free en el repositorio de GitHub vim/vim anterior a 9.0.0882. Multiple vulnerabilities have been found in Vim, the worst of which could result in denial of service. Versions less than 9.0.1157 are affected. • https://github.com/vim/vim/commit/c3d27ada14acd02db357f2d16347acc22cb17e93 • CWE-416: Use After Free •

CVE-2022-4293 – Floating Point Comparison with Incorrect Operator in vim/vim
https://notcve.org/view.php?id=CVE-2022-4293
05 Dec 2022 — Floating Point Comparison with Incorrect Operator in GitHub repository vim/vim prior to 9.0.0804. It was discovered that Vim incorrectly handled memory when opening certain files. If an attacker could trick a user into opening a specially crafted file, it could cause Vim to crash, or possibly execute arbitrary code. This issue only affected Ubuntu 22.04 LTS. It was discovered that Vim incorrectly handled memory when opening certain files. • https://github.com/vim/vim/commit/cdef1cefa2a440911c727558562f83ed9b00e16b • CWE-697: Incorrect Comparison CWE-1077: Floating Point Comparison with Incorrect Operator •