UBUNTU-CVE-2022-1674
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-1674
UBUNTU-CVE-2022-1674
Summary:
Details: NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 allows attackers to cause a denial of service (application crash) via a crafted input.
References: https://ubuntu.com/security/CVE-2022-1674, https://huntr.dev/bounties/a74ba4a4-7a39-4a22-bde3-d2f8ee07b385, https://github.com/vim/vim/commit/a59f2dfd0cf9ee1a584d3de5b7c2d47648e79060, https://github.com/vim/vim/commit/a59f2dfd0cf9ee1a584d3de5b7c2d47648e79060, https://ubuntu.com/security/notices/USN-5723-1, https://ubuntu.com/security/notices/USN-5995-1, https://www.cve.org/CVERecord?id=CVE-2022-1674
Affected packages
Package
Name: vim
Purl: pkg:deb/ubuntu/vim@2:7.4.052-1ubuntu3.1+esm8?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
