cbcvebase.
CVE-2022-0213
published 2022-01-14

CVE-2022-0213: Heap-based Buffer Overflow in vim/vim vim is vulnerable to Heap-based Buffer Overflow

medium6.6CVSS 3.1
AVLACLPRNUIRSUCLILAH
EPSS
1.24%
65.6th percentile
Heap-based Buffer Overflow in vim/vim vim is vulnerable to Heap-based Buffer Overflow

Affected

7 ranges
VendorProductVersion rangeFixed in
debianvim< vim 2:8.2.4659-1 (bookworm)vim 2:8.2.4659-1 (bookworm)
vimvim>= 0 < 2:8.0.1453-1ubuntu1.132:8.0.1453-1ubuntu1.13
vimvim>= 0 < 2:8.1.2269-1ubuntu5.142:8.1.2269-1ubuntu5.14
vimvim>= 0 < 2:8.2.3995-1ubuntu2.72:8.2.3995-1ubuntu2.7
vimvim>= 0 < 2:7.4.052-1ubuntu3.1+esm92:7.4.052-1ubuntu3.1+esm9
vimvim>= 0 < 2:7.4.1689-3ubuntu1.5+esm52:7.4.1689-3ubuntu1.5+esm5
vimvim_vim>= unspecified < 8.28.2

CVSS provenance

nvdv3.16.6MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
nvdv3.06.8MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
cvelistv56.6MEDIUM
osv7.1HIGH
cisa7.3HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.1HIGH
vendor_debian6.6LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.