VULNERABILITY

FreeBSD: VID-398D1EC1-F7E6-11EF-BB15-002590AF0794: vim -- Potential code execution

Try Surface Command Get a continuous 360° view of your attack surface
Back to Search

FreeBSD: VID-398D1EC1-F7E6-11EF-BB15-002590AF0794: vim -- Potential code execution

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
03/02/2025
Created
03/10/2025
Added
03/04/2025
Modified
03/12/2025

Description

vim reports:

Summary

Potential code execution with tar.vim and special crafted tar files

Description

Vim is distributed with the tar.vim plugin, that allows easy

editing and viewing of (compressed or uncompressed) tar files.

Since commit 129a844 (Nov 11, 2024 runtime(tar): Update tar.vim to

support permissions), the tar.vim plugin uses the ":read " ex command

line to append below the cursor position, however the is not sanitized

and is taken literaly from the tar archive. This allows to execute

shell commands via special crafted tar archives. Whether this really

happens, depends on the shell being used ('shell' option, which is set

using $SHELL).

Impact

Impact is high but a user must be convinced to edit such a file

using Vim which will reveal the filename, so a careful user may suspect

some strange things going on.

Solution(s)

  • freebsd-upgrade-package-vim
  • freebsd-upgrade-package-vim-gtk2
  • freebsd-upgrade-package-vim-gtk3
  • freebsd-upgrade-package-vim-motif
  • freebsd-upgrade-package-vim-tiny
  • freebsd-upgrade-package-vim-x11

insightVM

Advanced vulnerability management analytics and reporting.
Key Features
  • Lightweight Endpoint Agent
  • Live Dashboards
  • Real Risk Prioritization
  • IT-Integrated Remediation Projects
  • Cloud, Virtual, and Container Assessment
  • Integrated Threat Feeds
  • Easy-to-Use RESTful API
  • Automation-Assisted Patching
  • Automated Containment
Free InsightVM Trial View All Features

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;