CVE-2022-3352: Use After Free in vim/vim
Published Sep 29, 2022
·Updated
Last updated 24 July 2024
Other sources
Use After Free in GitHub repository vim/vim prior to 9.0.0614.
Affected Software
6 affected componentsFixes available
vim Vim<9.0.0614
Fedoraproject Fedora=35
Fedoraproject Fedora=36
Fedoraproject Fedora=37
Debian Debian Linux=10.0
debian/vim<=2:8.2.2434-3+deb11u1, <=2:8.2.2434-3+deb11u3
2:9.0.1378-2+deb12u22:9.1.1230-1
Remediation
Event History
Sep 29, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Jan 12, 2024
Data Sourced
via Launchpad·12:09 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:40 AM
RemedyDescriptionSeverityAffected Software
Mar 27, 2025
Data Sourced
via Debian·04:24 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2022-3352?
CVE-2022-3352 is a vulnerability in the GitHub repository vim/vim prior to version 9.0.0614 that allows for use-after-free.
2
How does CVE-2022-3352 affect software?
CVE-2022-3352 affects the vim package on Ubuntu and Debian Linux systems.
3
How severe is CVE-2022-3352?
CVE-2022-3352 severity is not specified in the provided information.
4
How can I fix CVE-2022-3352 on Ubuntu?
To fix CVE-2022-3352 on Ubuntu, update the vim package to version 9.0.0614 or later.
5
How can I fix CVE-2022-3352 on Debian?
To fix CVE-2022-3352 on Debian, update the vim package to version 2:8.1.0875-5+deb10u6 or later.