CVE-2024-43374: Vim heap-use-after-free in src/arglist.c:207

Published Aug 15, 2024
·
Updated

Last updated 5 September 2024

Other sources

The UNIX editor Vim prior to version 9.1.0678 has a use-after-free error in argument list handling. When adding a new file to the argument list, this triggers Buf autocommands. If in such an autocommand the buffer that was just opened is closed (including the window where it is shown), this causes the window structure to be freed which contains a reference to the argument list that we are actually modifying. Once the autocommands are completed, the references to the window and argument list are no longer valid and as such cause an use-after-free. Impact is low since the user must either intentionally add some unusual autocommands that wipe a buffer during creation (either manually or by sourcing a malicious plugin), but it will crash Vim. The issue has been fixed as of Vim patch v9.1.0678.

NVD

Vim heap-use-after-free in src/arglist.c:207

Microsoft

Affected Software

9 affected componentsFixes available
debian/vim<=2:8.2.2434-3+deb11u1, <=2:9.0.1378-2, <=2:9.1.0496-1
2:9.1.0709-1
Microsoft cbl2 vim 9.0.2121-3
Microsoft azl3 vim 9.0.2190-6
Microsoft cbl2 vim 9.0.2121-5
Microsoft azl3 vim 9.0.2190-5
All of the following
NetApp Bootstrap Os
NetApp Hci Compute Node
Neovim Neovim<=0.10.4
vim Vim<9.1.0678

Event History

Aug 15, 2024
CVE Published
via MITRE·11:47 PM
Data Sourced
via MITRE·11:47 PM
DescriptionSeverityWeakness
Aug 16, 2024
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
RemedyAffected Software
Sep 11, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Sep 17, 2024
Data Sourced
via Ubuntu·05:25 AM
RemedyDescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2024-43374?

CVE-2024-43374 has a severity rating that can allow for remote code execution due to a use-after-free error.

2

How do I fix CVE-2024-43374?

To fix CVE-2024-43374, upgrade the Vim editor to version 2:9.1.0709-1 or above on Debian and the appropriate patched version on Ubuntu.

3

Which versions of Vim are affected by CVE-2024-43374?

Vim versions prior to 9.1.0678 are affected by CVE-2024-43374.

4

Can CVE-2024-43374 be exploited remotely?

Yes, the use-after-free error in CVE-2024-43374 can potentially be exploited remotely through malicious autocommands.

5

Is it safe to use Vim versions before 9.1.0678 after CVE-2024-43374 is known?

No, it is not safe to use Vim versions before 9.1.0678 after CVE-2024-43374 is disclosed due to the security risk involved.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203