[ALSA-2026:66366] Important: vim security update
Type:
security
Severity:
important
Release date:
2026-09-11
Description:
Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: Vim: Information disclosure and denial of service via crafted Unicode characters in terminal emulator (CVE-2026-28420) * vim: Vim: Denial of Service via out-of-bounds write in terminal handling (CVE-2026-52859) * vim: Vim: Denial of Service via crafted spell file (CVE-2026-55892) * vim: Vim: Denial of Service via out-of-bounds write in spell sound-folding (CVE-2026-59857) * vim: Vim: Arbitrary command execution via crafted vimball (CVE-2026-73076) * vim: Vim: Heap buffer overflow allows arbitrary code execution (CVE-2026-73072) * vim: Vim: Arbitrary Code Execution via Crafted Netrw Menu Entries (CVE-2026-73078) * vim: Vim: Arbitrary Code Execution via Insecure Shell Command Handling (CVE-2026-73077) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 vim-X11-8.2.2637-26.el9_8.21.aarch64.rpm 0e9f32579e59eab7358c7134723074f518109ab74a7db8326c0d59871821fd5b
aarch64 vim-enhanced-8.2.2637-26.el9_8.21.aarch64.rpm 2aa00fe93578f0e0b8c01939c2d0846a59b0ffd15fdcc657720dafccb106a906
aarch64 vim-common-8.2.2637-26.el9_8.21.aarch64.rpm 2e8ade8d664f11145ae4cd3942cded7a7e3d767b4e07face2635165761e21ec9
aarch64 vim-minimal-8.2.2637-26.el9_8.21.aarch64.rpm 3ea1187bd531aecd3bf3f13a6447e07185b05a0bc3ab42687b32d05013c7e0d8
noarch vim-filesystem-8.2.2637-26.el9_8.21.noarch.rpm 41f80c82ddb7f012c709fa6ca6d31fe0f92502595372d3a11a0f98566a849f65
ppc64le vim-common-8.2.2637-26.el9_8.21.ppc64le.rpm 86906219ef3cd2ee997df0e3a8242ca1fe9e588700f129fc0cc5fff6c4bbe504
ppc64le vim-X11-8.2.2637-26.el9_8.21.ppc64le.rpm b41799f602ca08a666ce658fd787034433cfc16709f2045acc4e80cc9af3dc7c
ppc64le vim-minimal-8.2.2637-26.el9_8.21.ppc64le.rpm bc819c8c43e2835d9ab6ef315893f25f712ebac3e6bf245cdbfd15f93040d078
ppc64le vim-enhanced-8.2.2637-26.el9_8.21.ppc64le.rpm d98a2fe35ed732c4acbc4b242b0b0048405bc194a31d40b1cb062e3169d24739
s390x vim-enhanced-8.2.2637-26.el9_8.21.s390x.rpm 0c14252fc35482d56cf8477b60c573bb4398f818808510ed26409ba3d8b3965e
s390x vim-common-8.2.2637-26.el9_8.21.s390x.rpm 181f9883a40c03044ffed7cf33ed80c06ff9c38be11ad9045a2ca23d29b8b941
s390x vim-X11-8.2.2637-26.el9_8.21.s390x.rpm 20d15ac463bb8ce174b31699ca2f612b71fbbea9720c63ec0a2b6de90e66c40b
s390x vim-minimal-8.2.2637-26.el9_8.21.s390x.rpm 27f8b97cacc2b62127f2676dd50d85e2e02ffc3dd8d5a3c88a68367f7902f5e2
x86_64 vim-enhanced-8.2.2637-26.el9_8.21.x86_64.rpm 384b21652cbf11a852e2d56d7b4aff880ec7441d9e46451d41424e0b5c62a090
x86_64 vim-X11-8.2.2637-26.el9_8.21.x86_64.rpm 82fdd17cf75c575ff66442d94ca84360fee314fbfb640accd8451f974c33f2c2
x86_64 vim-minimal-8.2.2637-26.el9_8.21.x86_64.rpm 8ab922d009a3573c01a5ac8cecb4ca194e12f0070016911924e636f93a1c3b7b
x86_64 vim-common-8.2.2637-26.el9_8.21.x86_64.rpm a9add156fce944f9bbebb6557038ed6896b81745735457fa4dd2a8b2f5a59d97
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.