Description
A vulnerability was found in vim and classified as problematic. Affected by this issue is the function qf_update_buffer of the file quickfix.c of the component autocmd Handler. The manipulation leads to use after free. The attack may be launched remotely. Upgrading to version 9.0.0805 is able to address this issue. The name of the patch is d0fab10ed2a86698937e3c3fed2f10bd9bb5e731. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-212324.
Published: 2022-10-26
Score: 5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-3182-1 vim security update
EUVD EUVD EUVD-2022-43062 A vulnerability was found in vim and classified as problematic. Affected by this issue is the function qf_update_buffer of the file quickfix.c of the component autocmd Handler. The manipulation leads to use after free. The attack may be launched remotely. Upgrading to version 9.0.0805 is able to address this issue. The name of the patch is d0fab10ed2a86698937e3c3fed2f10bd9bb5e731. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-212324.
Ubuntu USN Ubuntu USN USN-6420-1 Vim vulnerabilities
History

Tue, 15 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Debian Debian Linux
Fedoraproject Fedora
Netapp Active Iq Unified Manager
Vim Vim
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-04-15T13:24:20.033Z

Reserved: 2022-10-26T00:00:00.000Z

Link: CVE-2022-3705

cve-icon Vulnrichment

Updated: 2024-08-03T01:20:57.031Z

cve-icon NVD

Status : Modified

Published: 2022-10-26T20:15:10.820

Modified: 2024-11-21T07:20:04.543

Link: CVE-2022-3705

cve-icon Redhat

Severity : Low

Publid Date: 2022-10-26T00:00:00Z

Links: CVE-2022-3705 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses