CVE-2022-2522
Dashboard / Vulnerabilities / CVE-2022-2522
CVE-2022-2522
Published: 25 Jul 2022Last Modified: 12 Aug 2026
Summary: Heap-based Buffer Overflow in vim/vim
Details: Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0061.
References: https://huntr.dev/bounties/3a2d83af-9542-4d93-8784-98b115135a22, https://huntr.dev/bounties/3a2d83af-9542-4d93-8784-98b115135a22/, https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/2xxx/CVE-2022-2522.json, https://nvd.nist.gov/vuln/detail/CVE-2022-2522, https://security.gentoo.org/glsa/202305-16, https://github.com/vim/vim/commit/5fa9f23a63651a8abdb074b4fc2ec9b1adc6b089, https://github.com/vim/vim/commit/b9e717367c395490149495cf375911b5d9de889e
Affected packages
Package
Name:
Purl:
Affected ranges
Affected versions
v9.0.0060
v9.0.0059
v9.0.0058
v9.0.0057
v9.0.0056
v9.0.0055
v9.0.0054
v9.0.0053
v9.0.0052
v9.0.0051
v9.0.0050
v9.0.0049
v9.0.0048
v9.0.0047
v9.0.0046
v9.0.0045
v9.0.0044
v9.0.0043
v9.0.0042
v9.0.0041
v9.0.0040
v9.0.0039
v9.0.0038
v9.0.0037
v9.0.0036
v9.0.0035
v9.0.0034
v9.0.0033
v9.0.0032
v9.0.0031
v9.0.0030
v9.0.0029
v9.0.0028
v9.0.0027
v9.0.0026
v9.0.0025
v9.0.0024
v9.0.0023
v9.0.0022
v9.0.0021
v9.0.0020
v9.0.0019
v9.0.0018
v9.0.0017
v9.0.0016
v9.0.0015
v9.0.0014
v9.0.0013
v9.0.0012
v9.0.0011
v9.0.0010
v9.0.0009
v9.0.0008
v9.0.0007
v9.0.0006
v9.0.0005
v9.0.0004
v9.0.0003
v9.0.0002
v9.0.0001
v9.0.0000
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
