π¨ CVE-2022-0572
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
π@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
π@cveNotify
π¨ CVE-2022-0685
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.
π@cveNotify
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.
π@cveNotify
π¨ CVE-2022-0714
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.
π@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.
π@cveNotify
GitHub
patch 8.2.4436: crash with weird 'vartabstop' value Β· vim/vim@4e889f9
Problem: Crash with weird 'vartabstop' value.
Solution: Check for running into the end of the line.
Solution: Check for running into the end of the line.
π¨ CVE-2022-0729
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
π@cveNotify
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
π@cveNotify
huntr.dev
Use of Out-of-range Pointer Offset in vim
24.63K developers have been protected by securing vim. Read this report, and explore others to learn how you can also protect the world by earning cash and CVEs.
π¨ CVE-2022-1154
Use after free in utf_ptr2char in GitHub repository vim/vim prior to 8.2.4646.
π@cveNotify
Use after free in utf_ptr2char in GitHub repository vim/vim prior to 8.2.4646.
π@cveNotify
huntr.dev
Use After Free in vim
24.63K developers have been protected by securing vim. Read this report, and explore others to learn how you can also protect the world by earning cash and CVEs.
π¨ CVE-2022-0943
Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim prior to 8.2.4563.
π@cveNotify
Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim prior to 8.2.4563.
π@cveNotify
GitHub
patch 8.2.4563: "z=" in Visual mode may go beyond the end of the line Β· vim/vim@5c68617
Problem: "z=" in Visual mode may go beyond the end of the line.
Solution: Adjust "badlen".
Solution: Adjust "badlen".
π¨ CVE-2022-1616
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
π@cveNotify
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
π@cveNotify
GitHub
patch 8.2.4895: buffer overflow with invalid command with composing c⦠· vim/vim@d889344
β¦hars
Problem: Buffer overflow with invalid command with composing chars.
Solution: Check that the whole character fits in the buffer.
Problem: Buffer overflow with invalid command with composing chars.
Solution: Check that the whole character fits in the buffer.
π¨ CVE-2022-1720
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
π@cveNotify
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
π@cveNotify
GitHub
patch 8.2.4956: reading past end of line with "gf" in Visual block mode Β· vim/vim@395bd1f
Problem: Reading past end of line with "gf" in Visual block mode.
Solution: Do not include the NUL in the length.
Solution: Do not include the NUL in the length.
π¨ CVE-2022-2285
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.
π@cveNotify
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.
π@cveNotify
GitHub
patch 9.0.0018: going over the end of the typahead Β· vim/vim@27efc62
Problem: Going over the end of the typahead.
Solution: Put a NUL after the typeahead.
Solution: Put a NUL after the typeahead.
π¨ CVE-2022-2304
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.
π@cveNotify
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.
π@cveNotify
GitHub
patch 9.0.0035: spell dump may go beyond end of an array Β· vim/vim@54e5fed
Problem: Spell dump may go beyond end of an array.
Solution: Limit the word length.
Solution: Limit the word length.
π¨ CVE-2022-2598
Undefined Behavior for Input to API in GitHub repository vim/vim prior to 9.0.0100.
π@cveNotify
Undefined Behavior for Input to API in GitHub repository vim/vim prior to 9.0.0100.
π@cveNotify
GitHub
patch 9.0.0101: invalid memory access in diff mode with "dp" and undo Β· vim/vim@4e677b9
Problem: Invalid memory access in diff mode with "dp" and undo.
Solution: Make sure the line number does not go below one.
Solution: Make sure the line number does not go below one.
π¨ CVE-2022-3234
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0483.
π@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0483.
π@cveNotify
GitHub
patch 9.0.0483: illegal memory access when replacing in virtualedit mode Β· vim/vim@c249913
Problem: Illegal memory access when replacing in virtualedit mode.
Solution: Check for replacing NUL after Tab.
Solution: Check for replacing NUL after Tab.
π¨ CVE-2022-27914
An issue was discovered in Joomla! 4.0.0 through 4.2.4. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in com_media.
π@cveNotify
An issue was discovered in Joomla! 4.0.0 through 4.2.4. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in com_media.
π@cveNotify
Joomla! Developer Networkβ’
Joomla! Developer Network
The Flexible Platform Empowering Website Creators
π¨ CVE-2021-39661
In _PMRLogicalOffsetToPhysicalOffset of the PowerVR kernel driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-246824784
π@cveNotify
In _PMRLogicalOffsetToPhysicalOffset of the PowerVR kernel driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-246824784
π@cveNotify
π¨ CVE-2021-1050
In MMU_UnmapPages of the PowerVR kernel driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-243825200
π@cveNotify
In MMU_UnmapPages of the PowerVR kernel driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-243825200
π@cveNotify