Vulnerabilities > CVE-2022-1720 - Buffer Over-read vulnerability in multiple products

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH

Summary

Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

Vulnerable Configurations

Part Description Count
Application
Vim
10581
OS
Debian
2
OS
Fedoraproject
2
OS
Apple
53

Common Weakness Enumeration (CWE)