CVE-2023-4735Out-of-bounds Write in VIM

Severity
7.8HIGHNVD
EPSS
0.0%
top 92.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 2
Latest updateDec 9

Description

Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1847.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

NVDvim/vim< 9.0.1847
CVEListV5vim/vim_vimunspecified9.0.1847
Debianvim/vim< 2:9.0.1894-1+1
NVDapple/macos14.1

Patches

🔴Vulnerability Details

5
OSV
ubi: Fix use-after-free when volume resizing failed2025-12-09
OSV
vim vulnerabilities2023-10-25
GHSA
GHSA-3q9r-pq9x-wfp4: Out-of-bounds Write in GitHub repository vim/vim prior to 92023-09-02
OSV
CVE-2023-4735: Out-of-bounds Write in GitHub repository vim/vim prior to 92023-09-02
CVEList
Out-of-bounds Write in vim/vim2023-09-02

📋Vendor Advisories

6
Red Hat
kernel: ubi: Fix use-after-free when volume resizing failed2025-12-09
Apple
CVE-2023-4735: macOS Sonoma 14.12023-10-25
Ubuntu
Vim vulnerabilities2023-10-25
Microsoft
Out-of-bounds Write in vim/vim2023-09-12
Red Hat
vim: OOB Write ops.c in vim/vim2023-09-02
CVE-2023-4735 — Out-of-bounds Write in VIM VIM | cvebase