Unrated severityNVD Advisory· Published May 2, 2007· Updated Jun 16, 2026
CVE-2007-2438
CVE-2007-2438
Description
The sandbox for vim allows dangerous functions such as (1) writefile, (2) feedkeys, and (3) system, which might allow user-assisted attackers to execute shell commands and write files via modelines.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
30- marc.infonvdExploit
- secunia.com/advisories/25024nvdVendor Advisory
- secunia.com/advisories/25159nvdVendor Advisory
- secunia.com/advisories/25182nvdVendor Advisory
- secunia.com/advisories/25255nvdVendor Advisory
- attrition.org/pipermail/vim/2007-May/001614.htmlnvd
- marc.infonvd
- osvdb.org/36250nvd
- secunia.com/advisories/25367nvd
- secunia.com/advisories/25432nvd
- secunia.com/advisories/26653nvd
- tech.groups.yahoo.com/group/vimannounce/message/178nvd
- tech.groups.yahoo.com/group/vimdev/message/46627nvd
- tech.groups.yahoo.com/group/vimdev/message/46645nvd
- tech.groups.yahoo.com/group/vimdev/message/46658nvd
- www.attrition.org/pipermail/vim/2007-August/001770.htmlnvd
- www.debian.org/security/2007/dsa-1364nvd
- www.mandriva.com/security/advisoriesnvd
- www.novell.com/linux/security/advisories/2007_12_sr.htmlnvd
- www.redhat.com/support/errata/RHSA-2007-0346.htmlnvd
- www.securityfocus.com/archive/1/467202/100/0/threadednvd
- www.securityfocus.com/bid/23725nvd
- www.securitytracker.com/idnvd
- www.trustix.org/errata/2007/0017/nvd
- www.ubuntu.com/usn/usn-463-1nvd
- www.vim.org/news/news.phpnvd
- www.vupen.com/english/advisories/2007/1599nvd
- bugzilla.redhat.com/bugzilla/show_bug.cginvd
- exchange.xforce.ibmcloud.com/vulnerabilities/34012nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9876nvd
News mentions
0No linked articles in our index yet.