CVE-2022-0156

Description

vim is vulnerable to Use After Free

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.219

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2022-0156 are affected in Vim 8.2.4039Windows
Vulnerabilities CVE-2022-0156 are affected in Vim 8.2.4039Windows
Multiple vulnerabilities are fixed in Mac OS - Monterey 12.3 (Software Update) - AutoRebootMac
Multiple vulnerabilities are fixed in Mac OS - Monterey 12.3.1 (Software Update) - AutoRebootMac
Multiple vulnerabilities are fixed in MacOS Big Sur 11.6.8 - Software UpdateMac
Vi IMproved - enhanced vi editor (USN-6195-1) vim_8.2.3995-1ubuntu2.9_i386.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim_8.2.3995-1ubuntu2.9_amd64.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) xxd_8.2.3995-1ubuntu2.9_i386.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) xxd_8.2.3995-1ubuntu2.9_amd64.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-nox_8.2.3995-1ubuntu2.9_i386.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-nox_8.2.3995-1ubuntu2.9_amd64.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-gtk3_8.2.3995-1ubuntu2.9_i386.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-gtk3_8.2.3995-1ubuntu2.9_amd64.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-tiny_8.2.3995-1ubuntu2.9_i386.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-tiny_8.2.3995-1ubuntu2.9_amd64.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-athena_8.2.3995-1ubuntu2.9_i386.debLinux
Vi IMproved - enhanced vi editor (USN-6195-1) vim-athena_8.2.3995-1ubuntu2.9_amd64.debLinux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-608134Mac OS - Monterey 12.7.6 (Software Update) - AutoReboot (CVE-2024-27877)
PATCH-608134Mac OS - Monterey 12.7.6 (Software Update) - AutoReboot (CVE-2024-27877)
PATCH-605753MacOS Big Sur 11.7.10 - Software Update (Force Reboot)(CVE-2023-41064)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234