vim is vulnerable to Out-of-bounds Read
{
"unresolved_ranges": [
{
"extracted_events": [
{
"last_affected": "10.15.7"
},
{
"last_affected": "10.15.7-security_update_2020\\-001"
},
{
"last_affected": "10.15.7-security_update_2021\\-001"
},
{
"last_affected": "10.15.7-security_update_2021\\-002"
},
{
"last_affected": "10.15.7-security_update_2021\\-003"
},
{
"last_affected": "10.15.7-security_update_2021\\-004"
},
{
"last_affected": "10.15.7-security_update_2021\\-005"
},
{
"last_affected": "10.15.7-security_update_2021\\-006"
},
{
"last_affected": "10.15.7-security_update_2021\\-007"
},
{
"last_affected": "10.15.7-security_update_2021\\-008"
},
{
"last_affected": "10.15.7-security_update_2022\\-001"
},
{
"last_affected": "10.15.7-security_update_2022\\-002"
},
{
"last_affected": "10.15.7-security_update_2022\\-003"
}
],
"source": "CPE_FIELD",
"vendor_product": "apple:mac_os_x",
"cpes": [
"cpe:2.3:o:apple:mac_os_x:10.15.7:*:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2020-001:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-001:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-002:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-003:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-004:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-005:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-006:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-007:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-008:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2022-001:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2022-002:*:*:*:*:*:*",
"cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2022-003:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"fixed": "12.3"
},
{
"introduced": "11.0"
},
{
"fixed": "11.6.6"
},
{
"last_affected": "10.15.7-security_update_2022\\-004"
}
],
"source": "CPE_FIELD",
"vendor_product": "apple:macos",
"cpes": [
"cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*",
"cpe:2.3:o:apple:macos:10.15.7:security_update_2022-004:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "9.0"
},
{
"last_affected": "10.0"
},
{
"last_affected": "11.0"
}
],
"source": "CPE_FIELD",
"vendor_product": "debian:debian_linux",
"cpes": [
"cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*",
"cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*",
"cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "34"
},
{
"last_affected": "35"
}
],
"source": "CPE_FIELD",
"vendor_product": "fedoraproject:fedora",
"cpes": [
"cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*",
"cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "8.0"
}
],
"source": "CPE_FIELD",
"vendor_product": "redhat:enterprise_linux",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "12.0"
},
{
"last_affected": "15.0"
}
],
"source": "CPE_FIELD",
"vendor_product": "suse:linux_enterprise",
"cpes": [
"cpe:2.3:o:suse:linux_enterprise:12.0:*:*:*:*:*:*:*",
"cpe:2.3:o:suse:linux_enterprise:15.0:*:*:*:*:*:*:*"
]
}
]
}{
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "8.2.3884"
}
],
"source": [
"CPE_FIELD",
"REFERENCES"
],
"cpe": "cpe:2.3:a:vim:vim:*:*:*:*:*:*:*:*"
}"2026-05-18T22:23:49Z"
[
{
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 4215.0,
"function_hash": "214764846312727546646171487892490990621"
},
"source": "https://github.com/vim/vim/commit/6f98371532fcff911b462d51bc64f2ce8a6ae682",
"signature_version": "v1",
"target": {
"function": "do_arg_all",
"file": "src/arglist.c"
},
"id": "CVE-2021-4166-67964f66"
},
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"146200493773228420153804765641940418619",
"218967900787845522220352169995692558372",
"12363815051148700686296061887046284050",
"38879001425316605461200067702156694394"
]
},
"source": "https://github.com/vim/vim/commit/6f98371532fcff911b462d51bc64f2ce8a6ae682",
"signature_version": "v1",
"target": {
"file": "src/version.c"
},
"id": "CVE-2021-4166-cb51e991"
},
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"185567366865266604782677280439472477815",
"31317846034931364245143615726118639537",
"67981564807204450699007323667666268989",
"267674015788444542105426557153853019270",
"229181367762145563813116431821266276293",
"198090065258888597611557651153187869357",
"313899156202760285331525771505153565469",
"20844737739068355734950375822981827330",
"1806502215197989888216537300792592615",
"220113072802690867859907835782785544445",
"262517789837333518495264872082672182720",
"282653179854416148003825487749707128445"
]
},
"source": "https://github.com/vim/vim/commit/6f98371532fcff911b462d51bc64f2ce8a6ae682",
"signature_version": "v1",
"target": {
"file": "src/arglist.c"
},
"id": "CVE-2021-4166-fab9978e"
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-4166.json"