CVE-2010-3914

Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vim:gvim:*:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.01:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.02:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.03:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.04:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.05:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.06:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.07:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.08:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.09:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.010:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.011:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.012:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.013:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.014:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.015:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.016:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.017:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.018:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.019:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.020:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.021:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.022:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.023:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.024:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.025:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.026:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.027:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.028:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.029:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.030:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.031:*:*:*:*:*:*:*
cpe:2.3:a:vim:gvim:7.3.032:*:*:*:*:*:*:*

History

21 Nov 2024, 01:19

Type Values Removed Values Added
References () ftp://ftp.vim.org/pub/vim/patches/7.3/7.3.034 - Patch () ftp://ftp.vim.org/pub/vim/patches/7.3/7.3.034 - Patch
References () http://jvn.jp/en/jp/JVN27868039/index.html - Patch () http://jvn.jp/en/jp/JVN27868039/index.html - Patch
References () http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000051.html - () http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000051.html -
References () http://secunia.com/advisories/42084 - Vendor Advisory () http://secunia.com/advisories/42084 - Vendor Advisory
References () http://www.securityfocus.com/bid/44588 - () http://www.securityfocus.com/bid/44588 -

Information

Published : 2010-11-03 13:37

Updated : 2024-11-21 01:19


NVD link : CVE-2010-3914

Mitre link : CVE-2010-3914

CVE.ORG link : CVE-2010-3914


JSON object : View

Products Affected

vim

  • gvim