Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-46246
HistoryOct 27, 2023 - 12:00 a.m.

CVE-2023-46246

2023-10-2700:00:00
ubuntu.com
ubuntu.com
16
vim
heap-use-after-free
memory allocated
integer overflow
code overflow
vulnerability

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

6.9 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Vim is an improved version of the good old UNIX editor Vi.
Heap-use-after-free in memory allocated in the function ga_grow_inner in
in the file src/alloc.c at line 748, which is freed in the file
src/ex_docmd.c in the function do_cmdline at line 1010 and then used
again in src/cmdhist.c at line 759. When using the :history command,
it’s possible that the provided argument overflows the accepted value.
Causing an Integer Overflow and potentially later an use-after-free. This
vulnerability has been patched in version 9.0.2068.

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchvim< 2:8.0.1453-1ubuntu1.13+esm7UNKNOWN
ubuntu20.04noarchvim< 2:8.1.2269-1ubuntu5.21UNKNOWN
ubuntu22.04noarchvim< 2:8.2.3995-1ubuntu2.15UNKNOWN
ubuntu23.04noarchvim< 2:9.0.1000-4ubuntu3.3UNKNOWN
ubuntu23.10noarchvim< 2:9.0.1672-1ubuntu2.2UNKNOWN
ubuntu14.04noarchvim< 2:7.4.052-1ubuntu3.1+esm15UNKNOWN
ubuntu16.04noarchvim< 2:7.4.1689-3ubuntu1.5+esm22UNKNOWN

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

6.9 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%