CVE List
| cve编号 | 漏洞描述 | 危险等级 | 包名 | 是否影响lns23-3 | 修复状态 | 发现时间 | 修复时间 |
|---|---|---|---|---|---|---|---|
| CVE-2022-3155 | When saving or opening an email attachment on macOS, Thunderbird did not set attribute com.apple.quarantine on the received fil... | Low | thunderbird | 是 | 完成修复 | 2022-12-22 | 2026-07-10 |
| CVE-2022-22458 | IBM Security Verify Governance, Identity Manager 10.0.1 stores user credentials in plain clear text which can be read by a remo... | Moderate | kernel | 否 | 完成修复 | 2022-12-22 | 2025-12-30 |
| CVE-2022-22457 | IBM Security Verify Governance, Identity Manager 10.0.1 stores sensitive information including user credentials in plain clear ... | Moderate | kernel | 否 | 完成修复 | 2022-12-22 | 2025-12-30 |
| CVE-2022-22456 | IBM Security Verify Governance, Identity Manager 10.0.1 is vulnerable to cross-site scripting. This vulnerability allows users ... | Moderate | kernel | 否 | 完成修复 | 2022-12-22 | 2025-12-30 |
| CVE-2021-4129 | Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, and Masa... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-22 | 2025-12-30 |
| CVE-2021-4127 | An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulnerabilit... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-22 | 2026-01-04 |
| CVE-2023-0056 | An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could al... | Moderate | haproxy | 是 | 完成修复 | 2022-12-21 | 2026-03-23 |
| CVE-2022-47629 | Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser. | Important | libksba | 否 | 完成修复 | 2022-12-21 | 2026-01-08 |
| CVE-2022-43551 | A vulnerability was found in curl. The issue can occur when curl's HSTS check is bypassed to trick it to keep using HTTP. Using... | Moderate | curl | 是 | 完成修复 | 2022-12-21 | 2026-03-23 |
| CVE-2022-38391 | IBM Spectrum Control 5.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sens... | Important | kernel | 否 | 完成修复 | 2022-12-20 | 2025-12-09 |
| CVE-2022-4543 | A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to... | Low | kernel, kernel 5.10, kernel 4.19 | 是 | 完成修复 | 2022-12-19 | 2026-01-22 |
| CVE-2022-42920 | Apache Commons BCEL has a number of APIs that would normally only allow changing specific class characteristics. However, due t... | Important | bcel, javapackages-tools:201801 | 否 | 完成修复 | 2022-12-19 | 2025-12-29 |
| CVE-2022-23536 | A local file inclusion vulnerability exists in Cortex. This issue could allow a malicious actor to remotely read local files as... | Moderate | grafana, grafana-pcp | 是 | 完成修复 | 2022-12-19 | 2026-07-10 |
| CVE-2020-36618 | A vulnerability classified as critical has been found in Furqan node-whois. Affected is an unknown function of the file index.c... | Critical | whois | 否 | 完成修复 | 2022-12-19 | 2026-01-09 |
| CVE-2022-47521 | An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_CHANNEL_LIST in drivers/net... | Moderate | kernel 4.19, kernel(ANCK)5.10 | 否 | 完成修复 | 2022-12-18 | 2025-12-30 |
| CVE-2022-47520 | An issue was discovered in the Linux kernel before 6.0.11. Missing offset validation in drivers/net/wireless/microchip/wilc1000... | Moderate | kernel, kernel 4.19, kernel(ANCK)5.10 | 否 | 完成修复 | 2022-12-18 | 2025-12-30 |
| CVE-2022-47519 | An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_OPER_CHANNEL in drivers/net... | Moderate | kernel, kernel 4.19, kernel(ANCK)5.10 | 否 | 完成修复 | 2022-12-18 | 2025-12-30 |
| CVE-2022-47518 | An issue was discovered in the Linux kernel before 6.0.11. Missing validation of the number of channels in drivers/net/wireless... | Moderate | kernel, kernel 4.19, kernel(ANCK)5.10 | 否 | 完成修复 | 2022-12-18 | 2025-12-30 |
| CVE-2022-4603 | A vulnerability classified as problematic has been found in ppp. Affected is the function dumpppp of the file pppdump/pppdump.c... | Important | ppp | 否 | 完成修复 | 2022-12-18 | 2026-01-04 |
| CVE-2021-4248 | A vulnerability was found in kapetan dns up to 6.1.0. It has been rated as problematic. Affected by this issue is some unknown ... | Critical | python-dns | 否 | 完成修复 | 2022-12-18 | 2026-01-10 |
| CVE-2022-46882 | A use-after-free in WebGL extensions could have led to a potentially exploitable crash. This vulnerability affects Firefox < 10... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-17 | 2025-12-30 |
| CVE-2022-46881 | An optimization in WebGL was incorrect in some cases, and could have led to memory corruption and a potentially exploitable cra... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-17 | 2025-12-30 |
| CVE-2022-46880 | A missing check related to tex units could have led to a use-after-free and potentially exploitable crash. Note: This ad... |
Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-17 | 2025-12-30 |
| CVE-2022-46878 | Mozilla developers Randell Jesup, Valentin Gosu, Olli Pettay, and the Mozilla Fuzzing Team reported memory safety bugs present ... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-17 | 2025-12-30 |
| CVE-2022-46874 | A file with a long filename could have had its filename truncated to remove the valid extension, leaving a malicious extension ... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-17 | 2025-12-30 |
| CVE-2022-46872 | An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-re... | Important | firefox, thunderbird | 否 | 完成修复 | 2022-12-17 | 2025-12-30 |
| CVE-2022-45414 | If a Thunderbird user quoted from an HTML email, for example by replying to the email, and the email contained either a VIDEO t... | Important | thunderbird | 否 | 完成修复 | 2022-12-17 | 2026-01-04 |
| CVE-2022-1471 | SnakeYaml's Constructor() class does not restrict types which can be instantiated during deserialization. Deserializing yaml co... | Important | prometheus-jmx-exporter | 否 | 完成修复 | 2022-12-17 | 2026-01-04 |
| CVE-2022-46700 | A flaw was found in webkitgtk. Improper input validation leads to a memory corruption vulnerability. This flaw allows an attack... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-46699 | A flaw was found in webkitgtk. Improper input validation leads to a memory corruption vulnerability. This flaw allows an attack... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-46698 | A logic issue was found in WebKitGTK and WPE WebKit. This flaw allows an attacker to process maliciously crafted web content th... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-46692 | A logic issue was found in WebKitGTK and WPE WebKit. This flaw allows a remote attacker to process unexpected cross-origin atta... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-46691 | A flaw was found in webkitgtk. Improper input validation leads to a memory corruption vulnerability. This flaw allows an attack... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-45141 | Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and per RFC84... | Important | samba | 否 | 完成修复 | 2022-12-16 | 2026-01-09 |
| CVE-2022-42867 | A flaw was found in webkitgtk. Improper input validation leads to a memory corruption vulnerability. This flaw allows an attack... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-42863 | A flaw was found in webkitgtk. Improper input validation leads to a memory corruption vulnerability. This flaw allows an attack... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-42852 | A flaw was found in webkitgtk. Improper input validation leads to a memory corruption vulnerability. This flaw allows an attack... | Moderate | webkitgtk4, webkitgtk3, webkit2gtk3 | 是 | 完成修复 | 2022-12-16 | 2026-07-11 |
| CVE-2022-42343 | Adobe Campaign version 7.3.1 (and earlier) and 8.3.9 (and earlier) are affected by a Server-Side Request Forgery (SSRF) vulnera... | Moderate | kernel | 是 | 完成修复 | 2022-12-16 | 2026-01-22 |
| CVE-2022-37967 | Windows Kerberos Elevation of Privilege Vulnerability | Important | samba | 否 | 完成修复 | 2022-12-16 | 2026-01-09 |
| CVE-2022-37966 | Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability | Important | samba | 否 | 完成修复 | 2022-12-16 | 2026-01-09 |
| CVE-2022-20572 | In verity_target of dm-verity-target.c, there is a possible way to modify read-only files due to a missing permission check. Th... | Moderate | kernel | 否 | 完成修复 | 2022-12-16 | 2025-12-30 |
| CVE-2022-20567 | In pppol2tp_create of l2tp_ppp.c, there is a possible use after free due to a race condition. This could lead to local escalati... | Moderate | kernel | 否 | 完成修复 | 2022-12-16 | 2025-12-30 |
| CVE-2022-4055 | 当xdg-mail配置为使用Thunderbird作为mailtoURL时,不正确的URL解析可能会导致将额外的标头传递给Thunde... | Moderate | xdg-utils | 是 | 完成修复 | 2022-12-14 | 2026-07-13 |
| CVE-2022-34271 | A vulnerability in import module of Apache Atlas allows an authenticated user to write to web server filesystem. This issue aff... | Important | atlas | 否 | 完成修复 | 2022-12-14 | 2026-01-06 |
| CVE-2022-3115 | An issue was discovered in the Linux kernel through 5.16-rc6. malidp_crtc_reset in drivers/gpu/drm/arm/malidp_crtc.c lacks chec... | Low | kernel | 否 | 完成修复 | 2022-12-14 | 2026-01-20 |
| CVE-2022-3113 | An issue was discovered in the Linux kernel through 5.16-rc6. mtk_vcodec_fw_vpu_init in drivers/media/platform/mtk-vcodec/mtk_v... | Low | kernel | 否 | 完成修复 | 2022-12-14 | 2026-01-20 |
| CVE-2022-3112 | An issue was discovered in the Linux kernel through 5.16-rc6. amvdec_set_canvases in drivers/staging/media/meson/vdec/vdec_help... | Low | kernel | 否 | 完成修复 | 2022-12-14 | 2026-01-20 |
| CVE-2022-3111 | An issue was discovered in the Linux kernel through 5.16-rc6. free_charger_irq() in drivers/power/supply/wm8350_power.c lacks f... | Low | kernel | 否 | 完成修复 | 2022-12-14 | 2026-01-20 |
| CVE-2022-3107 | An issue was discovered in the Linux kernel through 5.16-rc6. netvsc_get_ethtool_stats in drivers/net/hyperv/netvsc_drv.c lacks... | Low | kernel | 否 | 完成修复 | 2022-12-14 | 2026-01-20 |
| CVE-2022-3106 | An issue was discovered in the Linux kernel through 5.16-rc6. ef100_update_stats in drivers/net/ethernet/sfc/ef100_nic.c lacks ... | Low | kernel | 否 | 完成修复 | 2022-12-14 | 2026-01-20 |
| CVE-2022-3105 | An issue was discovered in the Linux kernel through 5.16-rc6. uapi_finalize in drivers/infiniband/core/uverbs_uapi.c lacks chec... | Moderate | kernel:4.19, kernel, kernel:5.10 | 否 | 完成修复 | 2022-12-14 | 2025-12-30 |
| CVE-2022-3104 | An issue was discovered in the Linux kernel through 5.16-rc6. lkdtm_ARRAY_BOUNDS in drivers/misc/lkdtm/bugs.c lacks check of th... | Moderate | kernel:4.19, kernel, kernel:5.10 | 否 | 完成修复 | 2022-12-14 | 2025-12-30 |
| CVE-2022-46875 | The Mozilla Foundation Security Advisory describes this flaw as: The executable file warning was not presented when downloading... | Moderate | firefox, thunderbird | 否 | 完成修复 | 2022-12-13 | 2026-01-24 |
| CVE-2022-45693 | A flaw was found in Jettison, where it is vulnerable to a denial of service caused by a stack-based buffer overflow. By sending... | Moderate | log4j, jettison, log4j:2 | 是 | 完成修复 | 2022-12-13 | 2026-07-10 |
| CVE-2022-41089 | .NET Framework Remote Code Execution Vulnerability. | Moderate | dotnet6.0, dotnet7.0 | 否 | 完成修复 | 2022-12-13 | 2025-12-05 |
| CVE-2022-3996 | A vulnerability was found in OpenSSL. This security flaw occurs if an X.509 certificate contains a malformed policy constraint ... | Low | compat-openssl10, edk2, openssl, compat-openssl11, ovmf, shim | 是 | 完成修复 | 2022-12-13 | 2026-03-23 |
| CVE-2022-3275 | A vulnerability was found in Wireshark. This issue could cause a crash in the OPUS protocol dissector in Wireshark that allows ... | Moderate | wireshark | 是 | 完成修复 | 2022-12-13 | 2026-03-23 |
| CVE-2022-3114 | An issue was discovered in the Linux kernel through 5.16-rc6. imx_register_uart_clocks in drivers/clk/imx/clk.c lacks check of ... | Moderate | kernel:4.19, kernel:6.6, kernel, kernel:5.10 | 否 | 完成修复 | 2022-12-13 | 2025-12-30 |
| CVE-2022-3110 | An issue was discovered in the Linux kernel through 5.16-rc6. _rtw_init_xmit_priv in drivers/staging/r8188eu/core/rtw_xmit.c la... | Low | kernel:4.19, kernel:6.6, kernel:5.10, kernel:4.18 | 否 | 完成修复 | 2022-12-13 | 2026-01-20 |
| CVE-2022-3108 | An issue was discovered in the Linux kernel through 5.16-rc6. kfd_parse_subtype_iolink in drivers/gpu/drm/amd/amdkfd/kfd_crat.c... | Low | kernel | 否 | 完成修复 | 2022-12-13 | 2026-01-20 |
| CVE-2023-25588 | No description is available for this CVE. | Low | gcc-toolset-11-binutils, gcc-toolset-12-binutils, binutils | 否 | 完成修复 | 2022-12-12 | 2025-12-11 |
| CVE-2023-25586 | No description is available for this CVE. | Low | binutils | 否 | 完成修复 | 2022-12-12 | 2025-12-11 |
| CVE-2023-25585 | No description is available for this CVE. | Low | binutils | 否 | 完成修复 | 2022-12-12 | 2025-12-11 |
| CVE-2023-25584 | No description is available for this CVE. | Low | binutils | 否 | 完成修复 | 2022-12-12 | 2025-12-11 |
| CVE-2022-46908 | A flaw was found in the SQLite package. SQLite could allow a remote attacker to bypass security restrictions caused by an issue... | Moderate | sqlite | 是 | 完成修复 | 2022-12-12 | 2026-03-23 |
| CVE-2022-4318 | A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially cr... | Moderate | fence-agents | 是 | 完成修复 | 2022-12-12 | 2026-07-11 |
| CVE-2022-3509 | A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, ... | Moderate | protobuf | 是 | 完成修复 | 2022-12-12 | 2026-03-23 |
| CVE-2022-25837 | Bluetooth® Pairing in Bluetooth Core Specification v1.0B through v5.3 may permit an unauthenticated MITM to acquire credential... | Important | kernel | 否 | 完成修复 | 2022-12-12 | 2025-12-09 |
| CVE-2022-25836 | Bluetooth® Low Energy Pairing in Bluetooth Core Specification v4.0 through v5.3 may permit an unauthenticated MITM to acquire ... | Important | kernel | 否 | 完成修复 | 2022-12-12 | 2025-12-09 |
| CVE-2022-4396 | UNSUPPORTED WHEN ASSIGNED A vulnerability was found in RDFlib pyrdfa3 and classified as problematic. This issue affects t... | Moderate | python-py | 是 | 完成修复 | 2022-12-10 | 2026-03-23 |
| CVE-2023-0836 | An information leak vulnerability was discovered in HAProxy 2.1, 2.2 before 2.2.27, 2.3, 2.4 before 2.4.21, 2.5 before 2.5.11, ... | Low | haproxy | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-4382 | A use-after-free flaw caused by a race among the superblock operations in the gadgetfs Linux driver was found. It could be trig... | Low | kernel | 是 | 完成修复 | 2022-12-09 | 2026-01-22 |
| CVE-2022-41717 | A flaw was found in the net/http library of the golang package. This flaw allows an attacker to cause excessive memory growth i... | Moderate | cockpit-composer, buildah, osbuild, podman, skopeo, containernetworking-plugins, golang, osbuild-composer, git-lfs, rhc | 是 | 完成修复 | 2022-12-09 | 2025-12-10 |
| CVE-2022-3724 | A vulnerability was found in Wireshark. This issue could cause a crash in the USB HID protocol dissector in Wireshark that allo... | Moderate | wireshark | 否 | 完成修复 | 2022-12-09 | 2026-01-25 |
| CVE-2022-23493 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23484 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23483 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23482 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23481 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23480 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-07-10 |
| CVE-2022-23479 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23478 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-23477 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Important | xrdp | 否 | 完成修复 | 2022-12-09 | 2026-01-04 |
| CVE-2022-23468 | xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP... | Moderate | xrdp | 是 | 完成修复 | 2022-12-09 | 2026-03-23 |
| CVE-2022-42329 | A possible deadlock flaw was found in the Linux kernel?s XEN driver in how some packets generated by a user dropped. This flaw ... | Moderate | kernel, kernel(ANCK)5.10 | 否 | 完成修复 | 2022-12-08 | 2025-12-30 |
| CVE-2022-42328 | Guests can trigger deadlock in Linux netback driver T[his CNA information record relates to multiple CVEs; the text explains wh... | Moderate | kernel | 否 | 完成修复 | 2022-12-07 | 2025-12-30 |
| CVE-2022-41902 | TensorFlow is an open source platform for machine learning. The function MakeGrapplerFunctionItem takes arguments that determin... | Important | tensorflow | 否 | 完成修复 | 2022-12-07 | 2026-01-04 |
| CVE-2022-3643 | Guests can trigger NIC interface reset/abort/crash via netback It is possible for a guest to trigger a NIC interface reset/abor... | Moderate | kernel:5.10, kernel:4.19, kernel, kernel:6.6 | 否 | 完成修复 | 2022-12-07 | 2025-12-30 |
| CVE-2022-43867 | IBM Spectrum Scale 5.1.0.1 through 5.1.4.1 could allow a local attacker to execute arbitrary commands in the container. IBM X-F... | Important | kernel | 否 | 完成修复 | 2022-12-06 | 2025-12-09 |
| CVE-2022-41853 | Those using java.sql.Statement or java.sql.PreparedStatement in hsqldb (HyperSQL DataBase) to process untrusted input may be vu... | Important | hsqldb, libreoffice | 否 | 完成修复 | 2022-12-06 | 2026-01-05 |
| CVE-2022-34361 | IBM Sterling Secure Proxy 6.0.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt high... | Important | kernel | 否 | 完成修复 | 2022-12-06 | 2025-12-09 |
| CVE-2022-35260 | curl can be told to parse a .netrc file for credentials. If that file endsin a line with 4095 consecutive non-white space let... |
Moderate | curl | 是 | 完成修复 | 2022-12-05 | 2026-03-23 |
| CVE-2022-34881 | Generation of Error Message Containing Sensitive Information vulnerability in Hitachi JP1/Automatic Operation allows local user... | Low | kernel | 是 | 完成修复 | 2022-12-05 | 2026-01-22 |
| CVE-2022-32221 | When doing HTTP(S) transfers, libcurl might erroneously use the read callback (CURLOPT_READFUNCTION) to ask for data to send,... |
Moderate | curl | 是 | 完成修复 | 2022-12-05 | 2026-03-23 |
| CVE-2022-3491 | A heap-based buffer overflow flaw was found in Vim's skipwhite() function of the charset.c file. This issue occurs when reading... | Low | vim | 是 | 完成修复 | 2022-12-03 | 2026-03-23 |
| CVE-2022-45060 | An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2... | Important | varnish, varnish:6 | 否 | 完成修复 | 2022-12-02 | 2025-12-30 |
| CVE-2022-4293 | A floating point exception flaw was found in Vim's num_divide() function of the eval.c file. This issue occurs when dividing th... | Low | vim | 是 | 完成修复 | 2022-12-02 | 2026-07-09 |
| CVE-2022-4292 | A heap use-after-free flaw was found in Vim's did_set_spelllang() function of the spell.c file. This issue occurs because vim u... | Low | vim | 是 | 完成修复 | 2022-12-02 | 2026-03-23 |
| CVE-2022-3591 | Use After Free in GitHub repository vim/vim prior to 9.0.0789. | Low | vim | 是 | 完成修复 | 2022-12-02 | 2026-03-23 |
| CVE-2022-3520 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0765. | Low | vim | 是 | 完成修复 | 2022-12-02 | 2026-03-23 |