Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-3705

19
FAUCET Score

CVE-2022-3705 is a high-severity use-after-free vulnerability in Vim's autocmd Handler, specifically within the qf_update_buffer function in quickfix.c. This flaw affects products like Debian, FedoraProject, NetApp, and Vim itself, and can be exploited remotely. Successful exploitation could lead to high impact on confidentiality, integrity, and availability due to its network attack vector and high impact scores. While the vulnerability has a high CVSS score of 7.5, there is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion. Users are advised to upgrade to Vim version 9.0.0805 to remediate this issue.

Impacted Technologies

VendorProductVersion(s)CPE
< 9.0.0805CPE matchmatch criteria
cpe:2.3:a:vim:vim:*:*:*:*:*:*:*:*
35CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
36CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
10.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:*

CVSS Data

CVSS version used by this source: 3.1

5.0MEDIUM

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
LOW
Availability Impact
LOW
Exploitability Score
1.6
Impact Score
3.4
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.20%
Probability of exploitation in next 30 days
EPSS Percentile
64.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0120 is in the 46th percentile among its peer group of 1,572 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

github_advisorypatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: cm1 vim 9.0.0805-1 on CBL Mariner 1.0Fixed in: 9.0.0805-1
microsoftpatch availablevia msrc
Product: cbl2 vim 9.0.0805-1 on CBL Mariner 2.0Fixed in: 9.0.0805-1
microsoftpatch availablevia msrc
Product: 18565-16823Fixed in: 9.0.0805-1
microsoftpatch availablevia msrc
Product: 18564-16820Fixed in: 9.0.0805-1
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: vim
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: vim

Vendor Advisories (2)

redhatCVE-2022-3705Low

vim: a use after free in the function qf_update_buffer

Oct 26, 2022
microsoft2022-Oct/CVE-2022-3705Important

vim autocmd quickfix.c qf_update_buffer use after free

Oct 11, 2022

References

seclists.org / fulldisclosure/2023/Jan/19
Third Party Advisory
github.com / vim/vim/commit/d0fab10ed2a86698937e3c3fed2f10bd9bb5e731
PatchThird Party Advisory
lists.debian.org / debian-lts-announce/2022/11/msg00009.html
Mailing ListThird Party Advisory
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/4JCW33NOLMELTTTDJH7WGDIFJZ5YEEMK
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/GTBVD4J2SKVSWK4VBN5JP5OEVK6GDS3N
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/JYEK5RNMH7MVQH6RPBKLSCCA6NMIKHDV
security.gentoo.org / glsa/202305-16
security.netapp.com / advisory/ntap-20221223-0004
Third Party Advisory
support.apple.com / kb/HT213605
Third Party Advisory
vuldb.com
Permissions RequiredThird Party Advisory