UBUNTU-CVE-2022-1616
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-1616
UBUNTU-CVE-2022-1616
Summary:
Details: Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
References: https://ubuntu.com/security/CVE-2022-1616, https://huntr.dev/bounties/40f1d75f-fb2f-4281-b585-a41017f217e2, https://github.com/vim/vim/commit/d88934406c5375d88f8f1b65331c9f0cab68cc6c, https://github.com/vim/vim/commit/d88934406c5375d88f8f1b65331c9f0cab68cc6c, https://ubuntu.com/security/notices/USN-5460-1, https://ubuntu.com/security/notices/USN-5613-1, https://www.cve.org/CVERecord?id=CVE-2022-1616, https://ubuntu.com/security/notices/USN-5613-2
Affected packages
Package
Name: vim
Purl: pkg:deb/ubuntu/vim@2:7.4.052-1ubuntu3.1+esm5?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
