← Back

CVE-2022-3705

nvd nist
Published: Oct 26, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.6 / Impact: 5.9
Source: NVD

Description

A vulnerability was found in vim and classified as problematic. Affected by this issue is the function qf_update_buffer of the file quickfix.c of the component autocmd Handler. The manipulation leads to use after free. The attack may be launched remotely. Upgrading to version 9.0.0805 is able to address this issue. The name of the patch is d0fab10ed2a86698937e3c3fed2f10bd9bb5e731. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-212324.

Affected (5)

Products: Vim: Vim · Fedoraproject: Fedora · Debian: Debian Linux · +1 more
Show all products
1 product
Vim
1 product
Fedora
1 product
Debian Linux
1 product
Active Iq Unified Manager
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 9.0.0805
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 35
Version 36
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.0
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

References (20)

Source: cna@vuldb.com
Third Party Advisory
Source: cna@vuldb.com
Mailing ListThird Party Advisory
Source: cna@vuldb.com
Third Party Advisory
Source: cna@vuldb.com
Third Party Advisory
Source: cna@vuldb.com
Permissions RequiredThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredThird Party Advisory

Timeline

No history available yet.