vim is vulnerable to Denial Of Service (DoS).The vulnerability exists due to lack of proper initialization of the mouse click in do_mouse
function in mouse.c
, which allows an attacker to crash the application by providing a malicious input.
access.redhat.com/security/cve/cve-2022-2980
bugzilla.redhat.com/show_bug.cgi?id=2123709
github.com/vim/vim/commit/80525751c5ce9ed82c41d83faf9ef38667bf61b1
huntr.dev/bounties/6e7b12a5-242c-453d-b39e-9625d563b0ea
lists.fedoraproject.org/archives/list/[email protected]/message/XWOJOA7PZZAMBI5GFTL6PWHXMWSDLUXL/
secdb.alpinelinux.org/edge/main.yaml
security.gentoo.org/glsa/202305-16