CVE-2025-24014
CVSS 3.1 Score 4.2 of 10 (medium)
Details
Published Jan 20, 2025
Updated: Jan 21, 2025
CWE ID 787
Summary
CVE-2025-24014 is a vulnerability affecting the open-source text editor Vim before version 9.1.1043. In silent Ex mode, Vim does not display a screen but can still be manipulated to trigger the function responsible for scrolling, even in batch mode. This function, intended for use with a graphical interface, may cause a redraw, leading to an attempt to access an unallocated ScreenLines pointer. This issue is resolved in version 9.1.1043.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- VIM
Affected Vendors
- Aviakom VIM AVIA