Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-72249
HistorySep 11, 2023 - 12:00 a.m.

Vim buffer overflow vulnerability (CNVD-2023-72249)

2023-09-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
vim
buffer overflow
vulnerability
remote attacker
arbitrary code
denial of service
regexp.c

0.001 Low

EPSS

Percentile

19.9%

Vim is a cross-platform text editor. A buffer overflow vulnerability exists in Vim versions prior to 9.0.1873, which stems from a boundary error in the regexp.c:2482 function when handling untrusted input. A remote attacker could exploit this vulnerability to execute arbitrary code on the system or cause a denial of service attack.

CPENameOperatorVersion
vim vimlt9.0.1873