CVE-2023-1170

Updated: 2026-03-05 01:43:03.335573

Description:

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x MEDIUM 6.6

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU vim 8.2.2637 6.6 MEDIUM Ignored 2025-01-10 00:56:26 This flaw is only exploitable through local, interactive use of Vim by enticing a user to open a spe...
CentOS 6 ELS vim 7.4.629 6.6 MEDIUM Released CLSA-2023:1679924984 2023-04-04 11:04:31
CentOS 7 ELS vim 7.4.629 6.6 MEDIUM Ignored 2024-06-25 11:20:11 Ignored due to low severity
CloudLinux 6 ELS vim 7.4.629 6.6 MEDIUM Released CLSA-2023:1679924909 2023-04-04 11:04:31
Debian 10 ELS vim 8.1.0875 6.6 MEDIUM Ignored 2025-10-11 00:17:06 Ignored due to low severity
Oracle Linux 6 ELS vim 7.4.629 6.6 MEDIUM Released CLSA-2023:1679925093 2023-03-27 11:04:10
Ubuntu 16.04 ELS vim 7.4.1689-3 6.6 MEDIUM Released CLSA-2023:1679925211 2023-03-27 11:04:07