CVE-2024-47814
CVSS 3.1 Score 3.9 of 10 (low)
Details
Published Oct 7, 2024
Updated: Oct 10, 2024
CWE ID 416
Summary
CVE-2024-47814 is a use-after-free vulnerability affecting Vim, an open source command-line text editor. This issue occurs when closing a buffer and re-opening it in a new split window using a BufWinLeave auto command. The impact is low, as this sequence of events requires deliberate user actions, but may lead to a crash. Users are advised to upgrade to version 9.1.0764 to mitigate the vulnerability, as there are no known workarounds.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- VIM
Affected Vendors
- Aviakom VIM AVIA