UBUNTU-CVE-2022-1620
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-1620
UBUNTU-CVE-2022-1620
Summary:
Details: NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 allows attackers to cause a denial of service (application crash) via a crafted input.
References: https://ubuntu.com/security/CVE-2022-1620, https://huntr.dev/bounties/7a4c59f3-fcc0-4496-995d-5ca6acd2da51, https://github.com/vim/vim/commit/8e4b76da1d7e987d43ca960dfbc372d1c617466f, https://ubuntu.com/security/notices/USN-5460-1, https://ubuntu.com/security/notices/USN-5613-1, https://www.cve.org/CVERecord?id=CVE-2022-1620, https://ubuntu.com/security/notices/USN-5613-2
Affected packages
Package
Name: vim
Purl: pkg:deb/ubuntu/vim@2:7.4.052-1ubuntu3.1+esm5?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
