Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

VIM RCE via crafted textfile #11973

Open
sempervictus opened this issue Jun 12, 2019 · 7 comments
Open

VIM RCE via crafted textfile #11973

sempervictus opened this issue Jun 12, 2019 · 7 comments
Labels
easy suggestion-module New module suggestions

Comments

@sempervictus
Copy link
Contributor

Everyone knows those "swears by vim and only vim" coders. https://github.com/numirias/security/blob/master/doc/2019-06-04_ace-vim-neovim.md might make them swear more.

@h00die
Copy link
Contributor

h00die commented Jun 12, 2019

Looks like a trivial rce!

@wvu
Copy link
Contributor

wvu commented Jun 12, 2019

I asked @busterb if he wanted to do this, since he was already looking at it.

@h00die h00die added easy suggestion Suggestions for new functionality labels Jun 12, 2019
@OJ
Copy link
Contributor

OJ commented Jun 12, 2019

I've tried to repro this on so many installs, and none of them worked out of the box.

@wvu
Copy link
Contributor

wvu commented Jun 12, 2019

That's a good data point. Thank you!

@wvu
Copy link
Contributor

wvu commented Jun 12, 2019

wvu@kharak:~$ grep nomodeline .vimrc*
.vimrc.after:set nomodeline
.vimrc.orig:set nomodeline
wvu@kharak:~$

@philmenow
Copy link

I've been trying to get my phone rooted for some time now.when I do I'm going to learn so I can show other's.

@wvu
Copy link
Contributor

wvu commented Jun 26, 2019

Are you going to write a video in Vim?

@bcoles bcoles added suggestion-module New module suggestions and removed suggestion Suggestions for new functionality labels Mar 25, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
easy suggestion-module New module suggestions
Projects
None yet
Development

No branches or pull requests

6 participants