High severity7.5OSV Advisory· Published Feb 24, 2019· Updated Jun 17, 2026
CVE-2018-20786
CVE-2018-20786
Description
libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- osv-coords6 versionspkg:apk/chainguard/libvtermpkg:apk/chainguard/libvterm-devpkg:apk/chainguard/libvterm-staticpkg:apk/wolfi/libvtermpkg:apk/wolfi/libvterm-devpkg:apk/wolfi/libvterm-static
< 0.3.3-r4+ 5 more
- (no CPE)range: < 0.3.3-r4
- (no CPE)range: < 0.3.3-r4
- (no CPE)range: < 0.3.3-r4
- (no CPE)range: < 0.3.3-r4
- (no CPE)range: < 0.3.3-r4
- (no CPE)range: < 0.3.3-r4
Patches
Vulnerability mechanics
References
3- github.com/vim/vim/commit/cd929f7ba8cc5b6d6dcf35c8b34124e969fed6b8nvdPatchThird Party Advisory
- github.com/vim/vim/issues/3711nvdExploitThird Party Advisory
- usn.ubuntu.com/4309-1/nvd
News mentions
0No linked articles in our index yet.