CVE-2022-2285: Integer Overflow or Wraparound in vim/vim
Published Jul 2, 2022
·Updated
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.
Affected Software
5 affected componentsFixes available
vim Vim<9.0.0018
Fedoraproject Fedora=35
Fedoraproject Fedora=36
Debian Debian Linux=10.0
debian/vim<=2:8.2.2434-3+deb11u1, <=2:8.2.2434-3+deb11u3
2:9.0.1378-2+deb12u22:9.1.1230-1
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/vimto a version that resolves this vulnerability.Fixed in 2:9.0.1378-2+deb12u2Fixed in 2:9.1.1230-1 - Upgrade
Upgrade
vim/vimto a version that resolves this vulnerability.Fixed in 9.0
Event History
Jul 2, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 12, 2024
Data Sourced
via Launchpad·12:07 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:37 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-2285.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.'
3
What is the severity of this vulnerability?
The severity of this vulnerability has not been provided.
4
What software is affected by this vulnerability?
The software affected by this vulnerability is vim/vim.
5
How do I fix this vulnerability?
To fix this vulnerability, update the vim package to version 9.0 or later.