Vulnerability CVE-2023-48237


Published: 2023-11-16   Modified: 2023-11-17

Description:
Vim is an open source command line text editor. In affected versions when shifting lines in operator pending mode and using a very large value, it may be possible to overflow the size of integer. Impact is low, user interaction is required and a crash may not even happen in all situations. This issue has been addressed in commit `6bf131888` which has been included in version 9.0.2112. Users are advised to upgrade. There are no known workarounds for this vulnerability.

 References:
https://github.com/vim/vim/security/advisories/GHSA-f2m2-v387-gv87
https://github.com/vim/vim/commit/6bf131888a3d1de62bbfa8a7ea03c0ddccfd496e

Copyright 2026, cxsecurity.com

 

Back to Top