CVE Vulnerabilities

CVE-2023-48232

Improper Handling of Exceptional Conditions

Published: Nov 16, 2023 | Modified: Jan 25, 2024
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
4.3 LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM

Vim is an open source command line text editor. A floating point exception may occur when calculating the line offset for overlong lines and smooth scrolling is enabled and the cpo-settings include the n flag. This may happen when a window border is present and when the wrapped line continues on the next physical line directly in the window border because the cpo setting includes the n flag. Only users with non-default settings are affected and the exception should only result in a crash. This issue has been addressed in commit cb0b99f0 which has been included in release version 9.0.2107. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Vim Vim * 9.0.2107 (excluding)
Vim Ubuntu bionic *
Vim Ubuntu devel *
Vim Ubuntu lunar *
Vim Ubuntu mantic *
Vim Ubuntu trusty *
Vim Ubuntu xenial *

References