ELSA-2026-66348-0

ELSA-2026-66348-0 - vim security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-09-10

Description


[8.0.1763-31.0.1.el8_10.7]
- Remove upstream references [Orabug: 31197557]
- Added glibc-gconv-extra to common requires to provide ISO-8859-2 [Orabug: 34114984]

[2:8.0.1763-31.7]
- RHEL-253666 CVE-2026-28420 buffer overflow in terminal emulator

[2:8.0.1763-31.6]
- RHEL-215662 CVE-2026-55892 vim: stack out-of-bounds write in
dump_prefixes()

[2:8.0.1763-31.5]
- RHEL-215681 CVE-2026-59857 vim: stack out-of-bounds write in
spell_soundfold_sal()

[2:8.0.1763-31.4]
- RHEL-215657 CVE-2026-52859 vim: out-of-bounds read in terminal
cell.chars[] loop

[2:8.0.1763-31.3]
- CVE-2026-73072 vim: heap buffer overflow in set_sofo()

[2:8.0.1763-31.2]
- CVE-2026-73078 vim: code injection in netrw via bookmarks

[2:8.0.1763-31.1]
- CVE-2026-73076 vim: code execution via .VimballRecord file


Related CVEs


CVE-2026-28420
CVE-2026-52859
CVE-2026-55892
CVE-2026-59857
CVE-2026-73072
CVE-2026-73076
CVE-2026-73078

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) vim-8.0.1763-31.0.1.el8_10.7.src.rpmf7a7039fba65225ffe3b13d3bef994c2048324410627b9e3d8e760e47df501e2-ol8_aarch64_appstream
vim-8.0.1763-31.0.1.el8_10.7.src.rpmf7a7039fba65225ffe3b13d3bef994c2048324410627b9e3d8e760e47df501e2-ol8_aarch64_baseos_latest
vim-8.0.1763-31.0.1.el8_10.7.src.rpmf7a7039fba65225ffe3b13d3bef994c2048324410627b9e3d8e760e47df501e2-ol8_aarch64_u10_baseos_patch
vim-X11-8.0.1763-31.0.1.el8_10.7.aarch64.rpm281088441dedaeca255c488eef9e99ef2e4ab6d084c966ea5230abaeb8360f9b-ol8_aarch64_appstream
vim-common-8.0.1763-31.0.1.el8_10.7.aarch64.rpm70671dfd5b2bf0bccf50c6a5ad624a8e1106405796f91f226befe7663884fcf8-ol8_aarch64_appstream
vim-enhanced-8.0.1763-31.0.1.el8_10.7.aarch64.rpm919e4f8e3e5377c0c604e6a059beb74466f55bfbb1ddea55482d42c7e0f6bd1a-ol8_aarch64_appstream
vim-filesystem-8.0.1763-31.0.1.el8_10.7.noarch.rpm2f90d0d451d1b5ee6fb278b5debeb3f66d02e384146b18d936a204fa122d46d4-ol8_aarch64_appstream
vim-minimal-8.0.1763-31.0.1.el8_10.7.aarch64.rpm19f2df9ee35b83bdbfb36734a9c03567e2c7a0d7d382c3125cefbd8ff3bb9fad-ol8_aarch64_baseos_latest
vim-minimal-8.0.1763-31.0.1.el8_10.7.aarch64.rpm19f2df9ee35b83bdbfb36734a9c03567e2c7a0d7d382c3125cefbd8ff3bb9fad-ol8_aarch64_u10_baseos_patch
Oracle Linux 8 (x86_64) vim-8.0.1763-31.0.1.el8_10.7.src.rpmf7a7039fba65225ffe3b13d3bef994c2048324410627b9e3d8e760e47df501e2-ol8_x86_64_appstream
vim-8.0.1763-31.0.1.el8_10.7.src.rpmf7a7039fba65225ffe3b13d3bef994c2048324410627b9e3d8e760e47df501e2-ol8_x86_64_baseos_latest
vim-8.0.1763-31.0.1.el8_10.7.src.rpmf7a7039fba65225ffe3b13d3bef994c2048324410627b9e3d8e760e47df501e2-ol8_x86_64_u10_baseos_patch
vim-X11-8.0.1763-31.0.1.el8_10.7.x86_64.rpm394a3d0a820ab248e3d412ebd7c11868f509fb20929a5d14f201e45ec02e7f38-ol8_x86_64_appstream
vim-common-8.0.1763-31.0.1.el8_10.7.x86_64.rpmcf1c7aec658c67fe6cf20d625afc8e64220457b0829bec9940fc7b04925805aa-ol8_x86_64_appstream
vim-enhanced-8.0.1763-31.0.1.el8_10.7.x86_64.rpm46c00039b216ac9d38fc73c12f8c2a76b01946a3a7b0118d9fa7b7ba9de69d3d-ol8_x86_64_appstream
vim-filesystem-8.0.1763-31.0.1.el8_10.7.noarch.rpm2f90d0d451d1b5ee6fb278b5debeb3f66d02e384146b18d936a204fa122d46d4-ol8_x86_64_appstream
vim-minimal-8.0.1763-31.0.1.el8_10.7.x86_64.rpmcec597c010b88531bd4e4d28b0733d405a85a9f87108fff98c30a2e9a95ee143-ol8_x86_64_baseos_latest
vim-minimal-8.0.1763-31.0.1.el8_10.7.x86_64.rpmcec597c010b88531bd4e4d28b0733d405a85a9f87108fff98c30a2e9a95ee143-ol8_x86_64_u10_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete