CVE-2024-47814

CVSS 3.1 Score 3.9 of 10 (low)

Details

Published Oct 7, 2024
Updated: Oct 10, 2024
CWE ID 416

Summary

CVE-2024-47814 is a use-after-free vulnerability affecting Vim, an open source command-line text editor. This issue occurs when closing a buffer and re-opening it in a new split window using a BufWinLeave auto command. The impact is low, as this sequence of events requires deliberate user actions, but may lead to a crash. Users are advised to upgrade to version 9.1.0764 to mitigate the vulnerability, as there are no known workarounds.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share