CVE-2022-2257: Out-of-bounds Read in vim/vim
Last updated 24 July 2024
Other sources
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/vimto a version that resolves this vulnerability.Fixed in 2:9.0.1378-2+deb12u2Fixed in 2:9.1.1230-1 - Upgrade
Upgrade
vim/vimto a version that resolves this vulnerability.Fixed in 9.0
Event History
Frequently Asked Questions
What is CVE-2022-2257?
CVE-2022-2257 is an out-of-bounds read vulnerability in the GitHub repository vim/vim prior to version 9.0.
What is the severity of CVE-2022-2257?
The severity of CVE-2022-2257 is not specified.
How does CVE-2022-2257 affect vim/vim?
CVE-2022-2257 affects vim/vim versions prior to 9.0.
How can I fix CVE-2022-2257?
To fix CVE-2022-2257, update to version 9.0 or newer of vim/vim.
Where can I find more information about CVE-2022-2257?
You can find more information about CVE-2022-2257 [here](https://huntr.dev/bounties/ca581f80-03ba-472a-b820-78f7fd05fe89) and [here](https://github.com/vim/vim/commit/083692d598139228e101b8c521aaef7bcf256e9a).