Debian Vim vulnerabilities
236 known vulnerabilities affecting debian/vim.
Total CVEs
236
CISA KEV
0
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH40MEDIUM22LOW167
Vulnerabilities
Page 6 of 12
CVE-2022-0407LOWCVSS 7.8fixed in vim 2:8.2.4659-1 (bookworm)2022
CVE-2022-0407 [HIGH] CVE-2022-0407: vim - Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:8.2.4659-1)
bullseye: open
forky: resolved (fixed in 2:8.2.4659-1)
sid: resolved (fixed in 2:8.2.4659-1)
trixie: resolved (fixed in 2:8.2.4659-1)
debian
CVE-2022-2287LOWCVSS 7.1fixed in vim 2:9.0.0135-1 (bookworm)2022
CVE-2022-2287 [HIGH] CVE-2022-2287: vim - Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
Scope: local
bookworm: resolved (fixed in 2:9.0.0135-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0135-1)
sid: resolved (fixed in 2:9.0.0135-1)
trixie: resolved (fixed in 2:9.0.0135-1)
debian
CVE-2022-3520LOWCVSS 9.8fixed in vim 2:9.0.0813-1 (bookworm)2022
CVE-2022-3520 [CRITICAL] CVE-2022-3520: vim - Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0765.
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0765.
Scope: local
bookworm: resolved (fixed in 2:9.0.0813-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0813-1)
sid: resolved (fixed in 2:9.0.0813-1)
trixie: resolved (fixed in 2:9.0.0813-1)
debian
CVE-2022-0393LOWCVSS 7.1fixed in vim 2:8.2.4659-1 (bookworm)2022
CVE-2022-0393 [HIGH] CVE-2022-0393: vim - Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:8.2.4659-1)
bullseye: open
forky: resolved (fixed in 2:8.2.4659-1)
sid: resolved (fixed in 2:8.2.4659-1)
trixie: resolved (fixed in 2:8.2.4659-1)
debian
CVE-2022-0158LOWCVSS 3.3fixed in vim 2:8.2.4659-1 (bookworm)2022
CVE-2022-0158 [LOW] CVE-2022-0158: vim - vim is vulnerable to Heap-based Buffer Overflow
vim is vulnerable to Heap-based Buffer Overflow
Scope: local
bookworm: resolved (fixed in 2:8.2.4659-1)
bullseye: open
forky: resolved (fixed in 2:8.2.4659-1)
sid: resolved (fixed in 2:8.2.4659-1)
trixie: resolved (fixed in 2:8.2.4659-1)
debian
CVE-2022-2845LOWCVSS 7.8fixed in vim 2:9.0.0229-1 (bookworm)2022
CVE-2022-2845 [HIGH] CVE-2022-2845: vim - Improper Validation of Specified Quantity in Input in GitHub repository vim/vim ...
Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218.
Scope: local
bookworm: resolved (fixed in 2:9.0.0229-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0229-1)
sid: resolved (fixed in 2:9.0.0229-1)
trixie: resolved (fixed in 2:9.0.0229-1)
debian
CVE-2022-1725LOWCVSS 5.5fixed in vim 2:9.0.0135-1 (bookworm)2022
CVE-2022-1725 [MEDIUM] CVE-2022-1725: vim - NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4959.
NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4959.
Scope: local
bookworm: resolved (fixed in 2:9.0.0135-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0135-1)
sid: resolved (fixed in 2:9.0.0135-1)
trixie: resolved (fixed in 2:9.0.0135-1)
debian
CVE-2022-0629LOWCVSS 7.8fixed in vim 2:8.2.4659-1 (bookworm)2022
CVE-2022-0629 [HIGH] CVE-2022-0629: vim - Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:8.2.4659-1)
bullseye: open
forky: resolved (fixed in 2:8.2.4659-1)
sid: resolved (fixed in 2:8.2.4659-1)
trixie: resolved (fixed in 2:8.2.4659-1)
debian
CVE-2022-1620LOWCVSS 7.5fixed in vim 2:9.0.0135-1 (bookworm)2022
CVE-2022-1620 [HIGH] CVE-2022-1620: vim - NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitH...
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 allows attackers to cause a denial of service (application crash) via a crafted input.
Scope: local
bookworm: resolved (fixed in 2:9.0.0135-1)
bullseye: open
forky: resolved (fixed
debian
CVE-2022-4292LOWCVSS 7.8fixed in vim 2:9.0.1000-1 (bookworm)2022
CVE-2022-4292 [HIGH] CVE-2022-4292: vim - Use After Free in GitHub repository vim/vim prior to 9.0.0882.
Use After Free in GitHub repository vim/vim prior to 9.0.0882.
Scope: local
bookworm: resolved (fixed in 2:9.0.1000-1)
bullseye: open
forky: resolved (fixed in 2:9.0.1000-1)
sid: resolved (fixed in 2:9.0.1000-1)
trixie: resolved (fixed in 2:9.0.1000-1)
debian
CVE-2022-0413LOWCVSS 7.8fixed in vim 2:8.2.4659-1 (bookworm)2022
CVE-2022-0413 [HIGH] CVE-2022-0413: vim - Use After Free in GitHub repository vim/vim prior to 8.2.
Use After Free in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:8.2.4659-1)
bullseye: open
forky: resolved (fixed in 2:8.2.4659-1)
sid: resolved (fixed in 2:8.2.4659-1)
trixie: resolved (fixed in 2:8.2.4659-1)
debian
CVE-2022-2980LOWCVSS 5.5fixed in vim 2:9.0.0626-1 (bookworm)2022
CVE-2022-2980 [MEDIUM] CVE-2022-2980: vim - NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259.
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259.
Scope: local
bookworm: resolved (fixed in 2:9.0.0626-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0626-1)
sid: resolved (fixed in 2:9.0.0626-1)
trixie: resolved (fixed in 2:9.0.0626-1)
debian
CVE-2022-1733LOWCVSS 7.8fixed in vim 2:9.0.0135-1 (bookworm)2022
CVE-2022-1733 [HIGH] CVE-2022-1733: vim - Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.
Scope: local
bookworm: resolved (fixed in 2:9.0.0135-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0135-1)
sid: resolved (fixed in 2:9.0.0135-1)
trixie: resolved (fixed in 2:9.0.0135-1)
debian
CVE-2022-4293LOWCVSS 5.5fixed in vim 2:9.0.0813-1 (bookworm)2022
CVE-2022-4293 [MEDIUM] CVE-2022-4293: vim - Floating Point Comparison with Incorrect Operator in GitHub repository vim/vim p...
Floating Point Comparison with Incorrect Operator in GitHub repository vim/vim prior to 9.0.0804.
Scope: local
bookworm: resolved (fixed in 2:9.0.0813-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0813-1)
sid: resolved (fixed in 2:9.0.0813-1)
trixie: resolved (fixed in 2:9.0.0813-1)
debian
CVE-2022-1898LOWCVSS 7.8fixed in vim 2:9.0.0135-1 (bookworm)2022
CVE-2022-1898 [HIGH] CVE-2022-1898: vim - Use After Free in GitHub repository vim/vim prior to 8.2.
Use After Free in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:9.0.0135-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0135-1)
sid: resolved (fixed in 2:9.0.0135-1)
trixie: resolved (fixed in 2:9.0.0135-1)
debian
CVE-2022-3235LOWCVSS 7.8fixed in vim 2:9.0.0626-1 (bookworm)2022
CVE-2022-3235 [HIGH] CVE-2022-3235: vim - Use After Free in GitHub repository vim/vim prior to 9.0.0490.
Use After Free in GitHub repository vim/vim prior to 9.0.0490.
Scope: local
bookworm: resolved (fixed in 2:9.0.0626-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0626-1)
sid: resolved (fixed in 2:9.0.0626-1)
trixie: resolved (fixed in 2:9.0.0626-1)
debian
CVE-2022-3297LOWCVSS 7.8fixed in vim 2:9.0.0626-1 (bookworm)2022
CVE-2022-3297 [HIGH] CVE-2022-3297: vim - Use After Free in GitHub repository vim/vim prior to 9.0.0579.
Use After Free in GitHub repository vim/vim prior to 9.0.0579.
Scope: local
bookworm: resolved (fixed in 2:9.0.0626-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0626-1)
sid: resolved (fixed in 2:9.0.0626-1)
trixie: resolved (fixed in 2:9.0.0626-1)
debian
CVE-2022-0408LOWCVSS 7.8fixed in vim 2:8.2.4659-1 (bookworm)2022
CVE-2022-0408 [HIGH] CVE-2022-0408: vim - Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:8.2.4659-1)
bullseye: open
forky: resolved (fixed in 2:8.2.4659-1)
sid: resolved (fixed in 2:8.2.4659-1)
trixie: resolved (fixed in 2:8.2.4659-1)
debian
CVE-2022-2042LOWCVSS 7.8fixed in vim 2:9.0.0135-1 (bookworm)2022
CVE-2022-2042 [HIGH] CVE-2022-2042: vim - Use After Free in GitHub repository vim/vim prior to 8.2.
Use After Free in GitHub repository vim/vim prior to 8.2.
Scope: local
bookworm: resolved (fixed in 2:9.0.0135-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0135-1)
sid: resolved (fixed in 2:9.0.0135-1)
trixie: resolved (fixed in 2:9.0.0135-1)
debian
CVE-2022-2819LOWCVSS 7.8fixed in vim 2:9.0.0229-1 (bookworm)2022
CVE-2022-2819 [HIGH] CVE-2022-2819: vim - Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0211.
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0211.
Scope: local
bookworm: resolved (fixed in 2:9.0.0229-1)
bullseye: open
forky: resolved (fixed in 2:9.0.0229-1)
sid: resolved (fixed in 2:9.0.0229-1)
trixie: resolved (fixed in 2:9.0.0229-1)
debian