Vim是Vim组织开源的一款高效的文本编辑器。 Vim 9.2.0841之前版本存在数字错误漏洞,该漏洞源于prop_add_one()函数使用get_text_props()返回的proplen值递增uint16_t属性计数,导致计数超过0xffff回绕为零,并将现有文本属性记录复制到大小为零的堆分配中,可能导致内存破坏或拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-73078 | 8.6 HIGH | Vim: Arbitrary Code Execution via Netrw Menu Construction |
| CVE-2026-73072 | 8.5 HIGH | Vim: Heap Buffer Overflow when Loading a Spell File |
| CVE-2026-73076 | 8.4 HIGH | Vim: Arbitrary Command Execution via Malicious `.VimballRecord` Entry Replay in `vimball.v |
| CVE-2026-73077 | 8.4 HIGH | Vim: Arbitrary Code Execution via Shell Keyword Lookup |
| CVE-2026-73070 | 6.8 MEDIUM | Vim: Stack Buffer Overflow in the Vim Socket Server |
| CVE-2026-73075 | 4.6 MEDIUM | Vim: Out-of-bounds Access in Popup Opacity Handling |
| CVE-2026-73071 | 3.3 LOW | Vim: Use-after-free in JSON Decoding |
No comments yet