CVE-2023-1264NULL Pointer Dereference in VIM

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 89.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 7
Latest updateMar 20

Description

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1392.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

NVDvim/vim< 9.0.1392
CVEListV5vim/vim_vimunspecified9.0.1392
Debianvim/vim< 2:9.0.1658-1+1

Also affects: Fedora 37, 38

Patches

🔴Vulnerability Details

3
GHSA
GHSA-mrf7-wp64-3p45: NULL Pointer Dereference in GitHub repository vim/vim prior to 92023-03-08
CVEList
NULL Pointer Dereference in vim/vim2023-03-07
OSV
CVE-2023-1264: NULL Pointer Dereference in GitHub repository vim/vim prior to 92023-03-07

📋Vendor Advisories

4
Ubuntu
Vim vulnerabilities2023-03-20
Microsoft
NULL Pointer Dereference in vim/vim2023-03-14
Red Hat
vim: NULL pointer dereference issue in utfc_ptr2len2023-03-07
Debian
CVE-2023-1264: vim - NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1392.2023
CVE-2023-1264 — NULL Pointer Dereference in VIM VIM | cvebase