CVE-2023-0049
גבוהה 7.8
תיאור (מקור, אנגלית)
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143.
מדדים
- CVSS 3.1
-
7.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 000) נכון ל-8/10/2026
- CWE
- CWE-125
מוצרים מושפעים
apple: macos; netapp: hci compute node; neovim: neovim; vim: vim; fedoraproject: fedora
קישורים
- https://github.com/vim/vim/commit/7b17eb4b063a234376c1ec909ee293e42cff290c PatchThird Party Advisory
- https://github.com/vim/vim/commit/7b17eb4b063a234376c1ec909ee293e42cff290c PatchThird Party Advisory
- https://huntr.dev/bounties/5e6f325c-ba54-4bf0-b050-dca048fd3fd9 ExploitThird Party Advisory
- https://huntr.dev/bounties/5e6f325c-ba54-4bf0-b050-dca048fd3fd9 ExploitThird Party Advisory
- http://seclists.org/fulldisclosure/2023/Mar/17 Mailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap… Mailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap… Mailing ListThird Party Advisory
- https://security.gentoo.org/glsa/202305-16 Third Party Advisory
- https://support.apple.com/kb/HT213670 Third Party Advisory
- http://seclists.org/fulldisclosure/2023/Mar/17 Mailing ListThird Party Advisory