HomeVimCVE-2025-1215

CVE-2025-1215

LOW
2.4CVSS
Published: 2025-02-12
Updated: 2025-08-13
AI Analysis

Description

A vulnerability classified as problematic was found in vim up to 9.1.1096. This vulnerability affects unknown code of the file src/main.c. The manipulation of the argument --log leads to memory corruption. It is possible to launch the attack on the local host. Upgrading to version 9.1.1097 is able to address this issue. The patch is identified as c5654b84480822817bb7b69ebc97c174c91185e9. It is recommended to upgrade the affected component.

CVSS Metrics

Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Attack Vector
local
Complexity
low
Privileges
low
User Action
passive
Confidentiality
undefined
Integrity
undefined
Availability
undefined
Weaknesses
CWE-119

Metadata

Primary Vendor
VIM
Published
2/12/2025
Last Modified
8/13/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

vim : vimnetapp : bootstrap_os

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2025-1215 | LOW Severity | CVEDatabase.com | CVEDatabase.com