vim/vim vulnerability

Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.

Published 4 Mar 2023Updated 18 Sep 202614 sources
CVSS 6.6 ✓ VERIFIED REFERENCE

What happened

Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.

Affected versions

vim/vim: unspecified through before 9.0.1378 (custom) Fixed: See vendor advisory.

Why it matters

Review the vendor advisory and exposure of the affected product to determine operational impact.

Detection & mitigation

  • Apply vendor-provided updates or mitigations.
  • Review affected product exposure and access logs.

Public PoC references

RepositoryAuthorFirst seenReference
huntr.devNVD reference2023-03-04Verified