CVE-2022-3134: Use After Free in vim/vim
Published Sep 6, 2022
·Updated
Last updated 24 July 2024
Other sources
Use After Free in GitHub repository vim/vim prior to 9.0.0389.
Affected Software
3 affected componentsFixes available
vim Vim<9.0.0389
Debian Debian Linux=10.0
debian/vim<=2:8.2.2434-3+deb11u1
2:8.2.2434-3+deb11u32:9.0.1378-2+deb12u22:9.1.1230-1
Remediation
Event History
Sep 6, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 12, 2024
Data Sourced
via Launchpad·12:09 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:40 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-3134.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Use After Free in GitHub repository vim/vim prior to 9.0.0389.'
3
What is the severity of CVE-2022-3134?
The severity of CVE-2022-3134 is not specified.
4
What software is affected by CVE-2022-3134?
The software affected by CVE-2022-3134 is vim/vim version 2:8.2.3995-1ubuntu2.11 on Ubuntu and vim/vim versions 2:8.1.0875-5+deb10u6, 2:9.0.1378-2, and 2:9.0.1894-1 on Debian.
5
How do I fix CVE-2022-3134?
To fix CVE-2022-3134, update to the following versions: vim/vim 2:8.2.3995-1ubuntu2.11 on Ubuntu and vim/vim versions 2:8.2.2434-3+deb11u1, 2:8.1.0875-5+deb10u6, or 2:9.0.1894-1 on Debian.