CVE-2025-29768
Título es
CVE-2025-29768
Jue, 13/03/2025 – 17:15
Tipo
CWE-88
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2025-29768
Descripción en
Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an archive with Vim and then press 'x' on such a strange filename. The issue has been fixed as of Vim patch v9.1.1198.
13/03/2025
13/03/2025
Vector CVSS:3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Gravedad 3.1 (CVSS 3.1 Base Score)
4.40
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
MEDIUM
Referencias
https://github.com/vim/vim/commit/f209dcd3defb95bae21b2740910e6aa7bb940531
https://github.com/vim/vim/security/advisories/GHSA-693p-m996-3rmf
Enviar en el boletín
Off
