Out-of-bounds Write in vim/vim
CVE-2023-4735

7.8HIGH

Key Information:

Vendor

Vim

Status
Vendor
CVE Published:
2 September 2023

What is CVE-2023-4735?

An out-of-bounds write vulnerability exists in Vim software versions prior to 9.0.1847. This flaw can lead to unexpected behavior such as data corruption or crashes, affecting the stability and security of applications utilizing this popular text editor. Users are encouraged to update to the latest version to mitigate potential risks associated with this vulnerability.

Affected Version(s)

vim/vim < 9.0.1847

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-4735 : Out-of-bounds Write in vim/vim