CVE-2023-4733
Use After Free in vim/vim
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.3EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
04 sep 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Use After Free in GitHub repository vim/vim prior to 9.0.1840.
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Productos afectados
vim · vim/vim¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://seclists.org/fulldisclosure/2023/Oct/24https://github.com/vim/vim/commit/e1dc9a627536304bc4f738c21e909ad9fcf3974chttps://huntr.dev/bounties/1ce1fd8c-050a-4373-8004-b35b61590217https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/I56ITJAFMFAQ2G3BMGTCGM3GS62V2DTR/https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ITRVK4FB74RZDIGTZJXOZMUW6X6F4TNF/https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PFE3LDFRZ7EGWA5AU7YHYL62ELBOFZWQ/https://support.apple.com/kb/HT213984