Lucene search

K
redosRedosROS-20230412-02
HistoryApr 12, 2023 - 12:00 a.m.

ROS-20230412-02

2023-04-1200:00:00
redos.red-soft.ru
85
vim
text editor
vulnerability
class_object_index()
exploitation
remote
attacker
crafted file
application crash
denial of service
unix

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

0.0005 Low

EPSS

Percentile

19.0%

Vim text editor vulnerability related to the class_object_index() vim function in the vim9class.c file.
Exploitation of the vulnerability could allow an attacker acting remotely to trick a user into opening a specially crafted file, causing a problem that leads to a problem that leads to a bug.
a user to open a specially crafted file, causing a problem that crashes the application,
resulting in a denial of service.

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64vim-x11<= 9.0.1403-1UNKNOWN

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

0.0005 Low

EPSS

Percentile

19.0%