CVE-2022-1674

Updated: 2025-08-20 02:22:26.138562

Description:

NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 allows attackers to cause a denial of service (application crash) via a crafted input.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 4.3
CVSS Version 3.x MEDIUM 5.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS vim 7.4.629 5.5 MEDIUM Ignored 2022-05-23 19:13:44 Ignored due to low severity
CloudLinux 6 ELS vim 7.4.629 5.5 MEDIUM Ignored 2022-05-23 19:13:44 Ignored due to low severity
Debian 10 ELS vim 8.1.0875 5.5 MEDIUM Ignored 2025-10-11 00:18:03 Ignored due to low severity
Oracle Linux 6 ELS vim 7.4.629 5.5 MEDIUM Ignored 2022-05-23 19:13:44 Ignored due to low severity
Ubuntu 16.04 ELS vim 7.4.1689-3 5.5 MEDIUM Released CLSA-2022:1669309294 2022-11-24 13:25:09