CVE-2022-3491
Summary
| CVE | CVE-2022-3491 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-03 13:15:00 UTC |
| Updated | 2023-05-03 12:16:00 UTC |
| Description | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0742. |
Risk And Classification
Problem Types: CWE-122
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Vim, gVim: Multiple Vulnerabilities (GLSA 202305-16) — Gentoo security | GENTOO | security.gentoo.org | |
| huntr: Page not found | CONFIRM | huntr.dev | |
| patch 9.0.0742: reading past end of the line when compiling a function · vim/vim@3558afe · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 184233 Debian Security Update for vim (CVE-2022-3491)
- 199815 Ubuntu Security Notification for Vim Vulnerabilities (USN-6420-1)
- 354794 Amazon Linux Security Advisory for vim : ALAS2-2023-1975
- 354870 Amazon Linux Security Advisory for vim : ALAS-2023-1716
- 355073 Amazon Linux Security Advisory for vim : AL2012-2023-397
- 355260 Amazon Linux Security Advisory for vim : ALAS2023-2023-117
- 672788 EulerOS Security Update for vim (EulerOS-SA-2023-1543)
- 672823 EulerOS Security Update for vim (EulerOS-SA-2023-1568)
- 672979 EulerOS Security Update for vim (EulerOS-SA-2023-1883)
- 672982 EulerOS Security Update for vim (EulerOS-SA-2023-1858)
- 710718 Gentoo Linux Vim, gVim Multiple Vulnerabilities (GLSA 202305-16)
- 753073 SUSE Enterprise Linux Security Update for vim (SUSE-SU-2022:4631-1)
- 753603 SUSE Enterprise Linux Security Update for vim (SUSE-SU-2023:0209-1)