ELSA-2026-6915

ELSA-2026-6915 - vim security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-04-08

Description


[8.0.1763-22.0.1.el8_10.1]
- Remove upstream references [Orabug: 31197557]
- Added glibc-gconv-extra to common requires to provide ISO-8859-2 [Orabug: 34114984]

[2:8.0.1763-22.1]
- RHEL-159620 CVE-2026-33412 vim: Vim: Arbitrary code execution via command injection in glob() function
- RHEL-155428 CVE-2026-28417 vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
- RHEL-155412 CVE-2026-28421 vim: Vim: Denial of service and information disclosure via crafted swap file


Related CVEs


CVE-2026-28417
CVE-2026-28421
CVE-2026-33412

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) vim-8.0.1763-22.0.1.el8_10.1.src.rpm9b5d464ae7f81752fe163b18b698e35fb21b6b1b14895d1f1b044776b363b0e9-ol8_aarch64_appstream
vim-8.0.1763-22.0.1.el8_10.1.src.rpm9b5d464ae7f81752fe163b18b698e35fb21b6b1b14895d1f1b044776b363b0e9-ol8_aarch64_baseos_latest
vim-8.0.1763-22.0.1.el8_10.1.src.rpm9b5d464ae7f81752fe163b18b698e35fb21b6b1b14895d1f1b044776b363b0e9-ol8_aarch64_u10_baseos_patch
vim-X11-8.0.1763-22.0.1.el8_10.1.aarch64.rpm36336c4bf7ea3f2f7a056b0fc60c0b897969b19f2f7035dda8fe5045dd85b5cb-ol8_aarch64_appstream
vim-common-8.0.1763-22.0.1.el8_10.1.aarch64.rpm62ccc53e27de060dd1251730fb5e1ce267be92758aa275cad1539a1f8a009b23-ol8_aarch64_appstream
vim-enhanced-8.0.1763-22.0.1.el8_10.1.aarch64.rpm7e61227691935abd51c30fbef04e7c6d66ae655f3c070510e04384e155c483e6-ol8_aarch64_appstream
vim-filesystem-8.0.1763-22.0.1.el8_10.1.noarch.rpm43be078fdfd8ddf4fb3037d792c0c2897d442f3e8bc8d9c96cec271a821a85e9-ol8_aarch64_appstream
vim-minimal-8.0.1763-22.0.1.el8_10.1.aarch64.rpm578b1c935eaaf7882dad4cbba9fe671d0a2597c7ffb2247f79463f357b5beefe-ol8_aarch64_baseos_latest
vim-minimal-8.0.1763-22.0.1.el8_10.1.aarch64.rpm578b1c935eaaf7882dad4cbba9fe671d0a2597c7ffb2247f79463f357b5beefe-ol8_aarch64_u10_baseos_patch
Oracle Linux 8 (x86_64) vim-8.0.1763-22.0.1.el8_10.1.src.rpm9b5d464ae7f81752fe163b18b698e35fb21b6b1b14895d1f1b044776b363b0e9-ol8_x86_64_appstream
vim-8.0.1763-22.0.1.el8_10.1.src.rpm9b5d464ae7f81752fe163b18b698e35fb21b6b1b14895d1f1b044776b363b0e9-ol8_x86_64_baseos_latest
vim-8.0.1763-22.0.1.el8_10.1.src.rpm9b5d464ae7f81752fe163b18b698e35fb21b6b1b14895d1f1b044776b363b0e9-ol8_x86_64_u10_baseos_patch
vim-X11-8.0.1763-22.0.1.el8_10.1.x86_64.rpm9be09305284234a7ad2b153264a28c2a9fb89f6d562faf1b502a73d1d5649f3b-ol8_x86_64_appstream
vim-common-8.0.1763-22.0.1.el8_10.1.x86_64.rpm27ae11d80cccb88676a882632603fa8a5842b09e2060b1fc1069086996d897a7-ol8_x86_64_appstream
vim-enhanced-8.0.1763-22.0.1.el8_10.1.x86_64.rpmfd6542611ea4ba02ee87a3db5fa1a624a54904d26b3c97122ac7c7898a7aeb1f-ol8_x86_64_appstream
vim-filesystem-8.0.1763-22.0.1.el8_10.1.noarch.rpm43be078fdfd8ddf4fb3037d792c0c2897d442f3e8bc8d9c96cec271a821a85e9-ol8_x86_64_appstream
vim-minimal-8.0.1763-22.0.1.el8_10.1.x86_64.rpm0f6620a9ef56cb4bd2e7d085462e44412e6e76c879ff39f5d75b5ac333abbf70-ol8_x86_64_baseos_latest
vim-minimal-8.0.1763-22.0.1.el8_10.1.x86_64.rpm0f6620a9ef56cb4bd2e7d085462e44412e6e76c879ff39f5d75b5ac333abbf70-ol8_x86_64_u10_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete