https://seclists.org/oss-sec/2025/q1/36: Subject: [vim-security] segmentation fault in win_line() in Vim < 9.1.1043
Published Jan 21, 2025
·Updated
Affected Software
1 affected component
vim Vim<9.1.1043
Frequently Asked Questions
1
What is the severity of CVE-2025-xxxx?
The severity of CVE-2025-xxxx is considered to be moderate due to its potential to cause a segmentation fault.
2
How do I fix CVE-2025-xxxx?
To fix CVE-2025-xxxx, upgrade to Vim version 9.1.1043 or later.
3
What should I do if I cannot upgrade Vim to address CVE-2025-xxxx?
If you cannot upgrade, avoid using scripts with the affected Vim function to lessen the risk.
4
Can CVE-2025-xxxx be exploited remotely?
CVE-2025-xxxx cannot be exploited remotely as it requires local execution of scripts.
5
What are the risks associated with CVE-2025-xxxx?
The main risk associated with CVE-2025-xxxx is the potential for application crashes when vulnerable options are used.