Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-59203
HistoryAug 23, 2022 - 12:00 a.m.

Vim Resource Management Error Vulnerability (CNVD-2022-59203)

2022-08-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
vim
resource management
vulnerability
version 9.0.0225
memory
find_var_also_in_script
crash
arbitrary code
cnvd-2022-59203

EPSS

0.001

Percentile

39.3%

Vim is a cross-platform text editor, and a resource management error vulnerability exists in versions prior to Vim 9.0.0225, which stems from a confusion in the directive responsible for freeing memory in find_var_also_in_script. An attacker could use this vulnerability to potentially crash the program, execute arbitrary code, etc.