CVE-2025-9389 - CVE House
Back to Database
Status published Medium CVE-2025-9389

vim memmove-vec-unaligned-erms.S __memmove_avx_unaligned_erms memory corruption

Vulnerability Description

A vulnerability was identified in vim 9.1.0000. Affected is the function __memmove_avx_unaligned_erms of the file memmove-vec-unaligned-erms.S. The manipulation leads to memory corruption. The attack needs to be performed locally. The exploit is publicly available and might be used. Some users are not able to reproduce this. One of the users mentions that this appears not to be working, "when coloring is turned on".

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-9389

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Xudong Cao
  • Meng Xu

Affected Vendor

Affected Software

vim
Vulnerable Versions:
9.1.0000

Timeline

Official Publish: August 24th, 2025
Last Modified: August 25th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:P/RL:X/RC:C

Weaknesses (CWE)