### [CVE-2022-1619](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1619) ![](https://img.shields.io/static/v1?label=Product&message=vim%2Fvim&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3C%208.2.4899%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-122%20Heap-based%20Buffer%20Overflow&color=brighgreen) ### Description Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerabilities are capable of crashing software, modify memory, and possible remote execution ### POC #### Reference - http://seclists.org/fulldisclosure/2022/Oct/41 - http://seclists.org/fulldisclosure/2022/Oct/41 - https://huntr.dev/bounties/b3200483-624e-4c76-a070-e246f62a7450 - https://huntr.dev/bounties/b3200483-624e-4c76-a070-e246f62a7450 #### Github - https://github.com/ARPSyndicate/cvemon