First published: Mon Aug 15 2022(Updated: )
Last updated 24 July 2024
Credit: security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Vim Vim | <9.0.0213 | |
Fedoraproject Fedora | =35 | |
debian/vim | <=2:8.2.2434-3+deb11u1 | 2:9.0.1378-2 2:9.1.0967-2 |
Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-2817 is a vulnerability in the GitHub repository vim/vim, prior to version 9.0.0213, that allows for a use after free vulnerability.
CVE-2022-2817 has a severity rating of high.
The affected software includes vim packages on Ubuntu (versions up to 2:8.2.3995-1ubuntu2.11 and 9.0.0213), as well as vim packages on Debian (versions up to 2:8.2.2434-3+deb11u1).
To fix CVE-2022-2817 on Ubuntu, update the vim package to version 2:8.2.3995-1ubuntu2.11 (for versions up to 2:8.2.3995-1ubuntu2.11) or version 9.0.0213 (for version 9.0.0213).
To fix CVE-2022-2817 on Debian, update the vim package to a version higher than 2:8.2.2434-3+deb11u1 (including 2:8.1.0875-5+deb10u2, 2:8.1.0875-5+deb10u6, 2:9.0.1378-2, and 2:9.0.1894-1).