CVE-2021-3796: Use After Free in vim/vim
vim is vulnerable to Use After Free
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-3796?
CVE-2021-3796 is a vulnerability in vim that allows for use after free.
What is the severity of CVE-2021-3796?
CVE-2021-3796 has a high severity rating of 7.3.
Which software is affected by CVE-2021-3796?
The affected software includes Vim version up to 8.2.3428, Fedora versions 33-35, Debian Linux version 9.0, and NetApp ONTAP Select Deploy administration utility.
How can CVE-2021-3796 be fixed?
To fix CVE-2021-3796, users should update to a patched version of Vim or apply necessary security patches provided by the respective software vendors.
Where can I find more information about CVE-2021-3796?
You can find more information about CVE-2021-3796 at the following references: [http://www.openwall.com/lists/oss-security/2021/10/01/1](http://www.openwall.com/lists/oss-security/2021/10/01/1), [https://github.com/vim/vim/commit/35a9a00afcb20897d462a766793ff45534810dc3](https://github.com/vim/vim/commit/35a9a00afcb20897d462a766793ff45534810dc3), [https://huntr.dev/bounties/ab60b7f3-6fb1-4ac2-a4fa-4d592e08008d](https://huntr.dev/bounties/ab60b7f3-6fb1-4ac2-a4fa-4d592e08008d).