Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36118
HistoryJun 26, 2022 - 4:15 a.m.

Use-After-Free

2022-06-2604:15:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.001 Low

EPSS

Percentile

42.0%

vim is vulnerable to use after free. The vulnerability exists in utf_ptr2char function in mbyte.c because the freed memory is used when searching for pattern in path which allows an attacker to cause a memory corruption causing an application crash.