Vulnerabilities > VIM > VIM > 7.3.397

DATE CVE VULNERABILITY TITLE RISK
2017-02-10 CVE-2017-5953 Integer Overflow or Wraparound vulnerability in VIM
vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result in an integer overflow at a memory allocation site and a resultant buffer overflow.
network
low complexity
vim CWE-190
critical
9.8
2016-11-23 CVE-2016-1248 Improper Input Validation vulnerability in VIM
vim before patch 8.0.0056 does not properly validate values for the 'filetype', 'syntax' and 'keymap' options, which may result in the execution of arbitrary code if a file with a specially crafted modeline is opened.
network
vim debian CWE-20
6.8