CVE-2022-0156Use After Free in VIM

Severity
5.5MEDIUMCNA
GHSA5.9OSV7.8CISA7.5
No vector
EPSS
0.2%
top 55.42%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 10
Latest updateJul 3

Description

Use After Free in vim/vim vim is vulnerable to Use After Free

Affected Packages2 packages

CVEListV5vim/vim_vimunspecified8.2
Ubuntuvim/vim< 2:8.2.3995-1ubuntu2.9

🔴Vulnerability Details

3
OSV
vim vulnerabilities2023-07-03
GHSA
Improper Validation of Certificate with Host Mismatch in mellium.im/xmpp/websocket2022-02-16
CVEList
Use After Free in vim/vim2022-01-10

📋Vendor Advisories

7
Ubuntu
Vim vulnerabilities2023-07-03
Apple
CVE-2022-0156: macOS Big Sur 11.6.82022-07-20
Apple
CVE-2022-0156: macOS Monterey 12.32022-03-14
CISA
Cisco IOS Software and Cisco IOS XE Software Smart Install Denial-of-Service Vulnerability2022-03-03
Microsoft
Use After Free in vim/vim2022-01-11
CVE-2022-0156 — Use After Free in VIM VIM | cvebase