Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2020-20703
HistoryJun 20, 2023 - 3:15 p.m.

CVE-2020-20703

2023-06-2015:15:10
Debian Security Bug Tracker
security-tracker.debian.org
13
cve-2020-20703
vulnerability
buffer overflow
vim
remote attacker
execute arbitrary code
operand parameter
unix

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

73.5%

Buffer Overflow vulnerability in VIM v.8.1.2135 allows a remote attacker to execute arbitrary code via the operand parameter.

OSVersionArchitecturePackageVersionFilename
Debian12allvim< 2:8.1.2136-1vim_2:8.1.2136-1_all.deb
Debian11allvim< 2:8.1.2136-1vim_2:8.1.2136-1_all.deb
Debian999allvim< 2:8.1.2136-1vim_2:8.1.2136-1_all.deb
Debian13allvim< 2:8.1.2136-1vim_2:8.1.2136-1_all.deb

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

73.5%