An integer overflow at a u_read_undo memory allocation site would occur for vim before patch 8.0.0377, if it does not properly validate values for tree length when reading a corrupted undo file, which may lead to resultant buffer overflows.
References
Configurations
Information
Published : 2017-02-26 23:59
Updated : 2018-08-13 14:47
NVD link : CVE-2017-6349
Mitre link : CVE-2017-6349
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
vim
- vim