Vim Fix Available for Buffer Overflow Vulnerability
Access Point Consulting
Hands-on cybersecurity for small to mid-sized companies.
A vulnerability has been discovered in Vim, an open-source text editor program. It is identified as CVE-2024-22667 (CVSSv3: 7.8) and is a stack-based buffer overflow vulnerability. A proof-of-concept exploit was created for this vulnerability and has been subsequently patched in Vim versions 9.0.2142 and later. Due to NetApp utilizing this tool in a number of their products, there are also several of them which are under investigation at this time. Read more
Report by Matthew Fagan, Access Point Technology