Lucene search

K
ubuntuUbuntuUSN-5498-1
HistoryJun 30, 2022 - 12:00 a.m.

Vim vulnerabilities

2022-06-3000:00:00
ubuntu.com
83
vim
ubuntu
memory handling
arbitrary code
security flaw

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.5

Confidence

High

EPSS

0.003

Percentile

66.8%

Releases

  • Ubuntu 16.04 ESM

Packages

  • vim - Vi IMproved - enhanced vi editor

Details

It was discovered that Vim incorrectly handled memory when opening certain
files. If an attacker could trick a user into opening a specially crafted
file, it could cause Vim to crash, or possible execute arbitrary code.

OSVersionArchitecturePackageVersionFilename
Ubuntu16.04noarchvim< 2:7.4.1689-3ubuntu1.5+esm8UNKNOWN
Ubuntu16.04noarchvim< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-athena< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-athena-dbgsym< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-athena-py2< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-athena-py2-dbgsym< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-common< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-common-dbgsym< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-dbgsym< 2:7.4.1689-3ubuntu1.5UNKNOWN
Ubuntu16.04noarchvim-doc< 2:7.4.1689-3ubuntu1.5UNKNOWN
Rows per page:
1-10 of 301

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.5

Confidence

High

EPSS

0.003

Percentile

66.8%