← Back to CVEs
CVE-2023-4781
HIGH7.8
Description
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.
CVE Details
CVSS v3.1 Score7.8
SeverityHIGH
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack VectorLOCAL
ComplexityLOW
Privileges RequiredNONE
User InteractionREQUIRED
Published9/5/2023
Last Modified11/3/2025
Sourcenvd
Honeypot Sightings0
Affected Products
apple:macosdebian:debian_linuxvim:vim
Weaknesses (CWE)
CWE-122
References
http://seclists.org/fulldisclosure/2023/Oct/24(security@huntr.dev)
https://github.com/vim/vim/commit/f6d28fe2c95c678cc3202cc5dc825a3fcc709e93(security@huntr.dev)
https://huntr.dev/bounties/c867eb0a-aa8b-4946-a621-510350673883(security@huntr.dev)
https://lists.debian.org/debian-lts-announce/2023/09/msg00035.html(security@huntr.dev)
https://support.apple.com/kb/HT213984(security@huntr.dev)
http://seclists.org/fulldisclosure/2023/Oct/24(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/vim/vim/commit/f6d28fe2c95c678cc3202cc5dc825a3fcc709e93(af854a3a-2127-422b-91ae-364da2661108)
https://huntr.dev/bounties/c867eb0a-aa8b-4946-a621-510350673883(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2023/09/msg00035.html(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2025/03/msg00023.html(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT213984(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.