CVE-2022-3134: Use After Free in vim/vim
Last updated 24 July 2024
Other sources
Use After Free in GitHub repository vim/vim prior to 9.0.0389.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/vimto a version that resolves this vulnerability.Fixed in 2:8.2.2434-3+deb11u3Fixed in 2:9.0.1378-2+deb12u2Fixed in 2:9.1.1230-1 - Upgrade
Upgrade
vim/vimto a version that resolves this vulnerability.Fixed in 9.0.0389
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-3134.
What is the title of this vulnerability?
The title of this vulnerability is 'Use After Free in GitHub repository vim/vim prior to 9.0.0389.'
What is the severity of CVE-2022-3134?
The severity of CVE-2022-3134 is not specified.
What software is affected by CVE-2022-3134?
The software affected by CVE-2022-3134 is vim/vim version 2:8.2.3995-1ubuntu2.11 on Ubuntu and vim/vim versions 2:8.1.0875-5+deb10u6, 2:9.0.1378-2, and 2:9.0.1894-1 on Debian.
How do I fix CVE-2022-3134?
To fix CVE-2022-3134, update to the following versions: vim/vim 2:8.2.3995-1ubuntu2.11 on Ubuntu and vim/vim versions 2:8.2.2434-3+deb11u1, 2:8.1.0875-5+deb10u6, or 2:9.0.1894-1 on Debian.