CVE-2023-1170: Fedoraproject Fedora

Medium severity, CVSS 6.6. EPSS: 0.5% chance of exploitation in the next 30 days.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.

Affected products

  • Fedoraproject Fedora: version 36 only; version 37 only; version 38 only
  • Neovim Neovim: up to and including 0.8.3
  • Vim Vim: before 9.0.1376 (fixed in 9.0.1376)

Published 2023-03-03. Last modified 2026-09-18.