Vim - 'mch_expand_wildcards()' Heap Buffer Overflow



EKU-ID: 37150 CVE: CVE-2008-3432;OSVDB-51436 OSVDB-ID:
Author: Brian Hirt Published: 2005-01-29 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/30648/info

Vim is prone to a heap-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.

An attacker may exploit this issue to execute arbitrary code with the privileges of the user running the application. Failed exploit attempts will likely result in denial-of-service conditions.

This issue affects Vim 6.2.429 through 6.3.058.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/32225.zip