CVE-2023-2426: Apple macOS

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 9.0.1499.

Affected products

  • Apple macOS: version 11.7.9 only; version 12.6.8 only
  • Fedoraproject Fedora: version 37 only; version 38 only
  • Neovim Neovim: from 0.7.0, before 0.10.0 (fixed in 0.10.0)
  • Vim Vim: before 9.0.1499 (fixed in 9.0.1499)

Published 2023-04-29. Last modified 2026-09-24.