CVE-2023-2610
HIGH EPSS 38.1%
Published May 9, 20233y ago · Modified Jun 23, 20261w ago
7.8 CVSS 3.1
Published May 9, 2023 3y ago
Last Modified Jun 23, 2026 1w ago
Description
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1532.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Attack Vector Local
Attack Complexity Low
Privileges Required None
User Interaction Required
Scope Unchanged
Confidentiality High
Integrity High
Availability High
Threat Intelligence
EPSS Exploit Probability
38.1% percentile
Exploit & Patch Status
Public Exploit Known
Patch Available
Weaknesses 1
CWE-190 Integer Overflow or Wraparound Numeric Error
Affected Products 1
| Vendor | Product | Version | Range |
|---|---|---|---|
| vim | vim | * | <9.0.1532 |
References 8
- github.com https://github.com/vim/vim/commit/ab9a2d884b3a4abe319606ea95a5a6d6b01cd73a
- huntr.dev https://huntr.dev/bounties/31e67340-935b-4f6c-a923-f7246bc29c7d
- lists.debian.org https://lists.debian.org/debian-lts-announce/2023/06/msg00015.html
- lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00023.html
- lists.fedoraproject.org https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PCLJN4QINITA3ZASKLEJ64C5TFNKELMO/
- security.netapp.com https://security.netapp.com/advisory/ntap-20241129-0006/
- support.apple.com https://support.apple.com/kb/HT213844
- support.apple.com https://support.apple.com/kb/HT213845
Remediation
- github.com https://github.com/vim/vim/commit/ab9a2d884b3a4abe319606ea95a5a6d6b01cd73a
- huntr.dev https://huntr.dev/bounties/31e67340-935b-4f6c-a923-f7246bc29c7d