漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Vim < v9.1.0648 has a double-free in dialog_changed()
Vulnerability Description
Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim may create a new Untitled file, if the buffer did not have a name yet. However, when setting the buffer name to Unnamed, Vim will falsely free a pointer twice, leading to a double-free and possibly later to a heap-use-after-free, which can lead to a crash. The issue has been fixed as of Vim patch v9.1.0648.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L
Vulnerability Type
释放后使用
Vulnerability Title
Vim 安全漏洞
Vulnerability Description
Vim是Vim开源的一款跨平台的文本编辑器。 Vim v9.1.0648之前版本存在安全漏洞,该漏洞源于存在双重释放。
CVSS Information
N/A
Vulnerability Type
N/A