https://seclists.org/oss-sec/2023/q4/186: [vim-security] integer overflow in :history command in Vim < 9.0.2068
Published Oct 26, 2023
·Updated
Affected Software
1 affected component
vim Vim<9.0.2068
Frequently Asked Questions
1
What is the severity of CVE-2023-4521?
The severity of CVE-2023-4521 is classified as low.
2
How do I fix CVE-2023-4521?
To fix CVE-2023-4521, update Vim to version 9.0.2068 or later.
3
What type of vulnerability is CVE-2023-4521?
CVE-2023-4521 is an integer overflow vulnerability affecting the :history ex-command.
4
What are the potential impacts of CVE-2023-4521?
The impacts include possible integer overflow and subsequent use-after-free issues.
5
Which versions of Vim are affected by CVE-2023-4521?
CVE-2023-4521 affects all versions of Vim prior to 9.0.2068.