π¨ CVE-2022-44054
The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-utility package. The affected version of d8s-htm is 0.1.0.
π@cveNotify
The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-utility package. The affected version of d8s-htm is 0.1.0.
π@cveNotify
PyPI
democritus-utility
Democritus functions for working with utility functions.
π¨ CVE-2022-44051
The d8s-stats for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-math package. The affected version of d8s-htm is 0.1.0.
π@cveNotify
The d8s-stats for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-math package. The affected version of d8s-htm is 0.1.0.
π@cveNotify
π¨ CVE-2022-44053
The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-user-agents package. The affected version of d8s-htm is 0.1.0.
π@cveNotify
The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-user-agents package. The affected version of d8s-htm is 0.1.0.
π@cveNotify
PyPI
d8s-networking
Democritus functions for working with network requests.
π¨ CVE-2022-0554
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.
π@cveNotify
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.
π@cveNotify
GitHub
patch 8.2.4327: may end up with no current buffer Β· vim/vim@e3537ae
Problem: May end up with no current buffer.
Solution: When deleting the current buffer to not pick a quickfix buffer as
the new current buffer.
Solution: When deleting the current buffer to not pick a quickfix buffer as
the new current buffer.
π¨ CVE-2022-0572
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
π@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
π@cveNotify
π¨ CVE-2022-0685
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.
π@cveNotify
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.
π@cveNotify
π¨ CVE-2022-0714
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.
π@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.
π@cveNotify
GitHub
patch 8.2.4436: crash with weird 'vartabstop' value Β· vim/vim@4e889f9
Problem: Crash with weird 'vartabstop' value.
Solution: Check for running into the end of the line.
Solution: Check for running into the end of the line.
π¨ CVE-2022-0729
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
π@cveNotify
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
π@cveNotify
huntr.dev
Use of Out-of-range Pointer Offset in vim
24.63K developers have been protected by securing vim. Read this report, and explore others to learn how you can also protect the world by earning cash and CVEs.
π¨ CVE-2022-1154
Use after free in utf_ptr2char in GitHub repository vim/vim prior to 8.2.4646.
π@cveNotify
Use after free in utf_ptr2char in GitHub repository vim/vim prior to 8.2.4646.
π@cveNotify
huntr.dev
Use After Free in vim
24.63K developers have been protected by securing vim. Read this report, and explore others to learn how you can also protect the world by earning cash and CVEs.
π¨ CVE-2022-0943
Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim prior to 8.2.4563.
π@cveNotify
Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim prior to 8.2.4563.
π@cveNotify
GitHub
patch 8.2.4563: "z=" in Visual mode may go beyond the end of the line Β· vim/vim@5c68617
Problem: "z=" in Visual mode may go beyond the end of the line.
Solution: Adjust "badlen".
Solution: Adjust "badlen".
π¨ CVE-2022-1616
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
π@cveNotify
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
π@cveNotify
GitHub
patch 8.2.4895: buffer overflow with invalid command with composing c⦠· vim/vim@d889344
β¦hars
Problem: Buffer overflow with invalid command with composing chars.
Solution: Check that the whole character fits in the buffer.
Problem: Buffer overflow with invalid command with composing chars.
Solution: Check that the whole character fits in the buffer.
π¨ CVE-2022-1720
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
π@cveNotify
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
π@cveNotify
GitHub
patch 8.2.4956: reading past end of line with "gf" in Visual block mode Β· vim/vim@395bd1f
Problem: Reading past end of line with "gf" in Visual block mode.
Solution: Do not include the NUL in the length.
Solution: Do not include the NUL in the length.
π¨ CVE-2022-2285
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.
π@cveNotify
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.
π@cveNotify
GitHub
patch 9.0.0018: going over the end of the typahead Β· vim/vim@27efc62
Problem: Going over the end of the typahead.
Solution: Put a NUL after the typeahead.
Solution: Put a NUL after the typeahead.
π¨ CVE-2022-2304
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.
π@cveNotify
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.
π@cveNotify
GitHub
patch 9.0.0035: spell dump may go beyond end of an array Β· vim/vim@54e5fed
Problem: Spell dump may go beyond end of an array.
Solution: Limit the word length.
Solution: Limit the word length.
π¨ CVE-2022-2598
Undefined Behavior for Input to API in GitHub repository vim/vim prior to 9.0.0100.
π@cveNotify
Undefined Behavior for Input to API in GitHub repository vim/vim prior to 9.0.0100.
π@cveNotify
GitHub
patch 9.0.0101: invalid memory access in diff mode with "dp" and undo Β· vim/vim@4e677b9
Problem: Invalid memory access in diff mode with "dp" and undo.
Solution: Make sure the line number does not go below one.
Solution: Make sure the line number does not go below one.