ELSA-2026-77359

ELSA-2026-77359 - vim security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-10-07

Description


[8.0.1763-32.0.1]
- Remove upstream references [Orabug: 31197557]
- Added glibc-gconv-extra to common requires to provide ISO-8859-2 [Orabug: 34114984]

[2:8.0.1763-32]
- RHEL-271024 vim: vim: Ex command injection via crafted filename in sign_jump()

[2:8.0.1763-32]
- RHEL-257017 CVE-2026-73073 arbitrary Ex command execution during
C omni-completion

[2:8.0.1763-31.7]
- RHEL-253666 CVE-2026-28420 buffer overflow in terminal emulator

[2:8.0.1763-31.6]
- RHEL-215662 CVE-2026-55892 vim: stack out-of-bounds write in
dump_prefixes()

[2:8.0.1763-31.5]
- RHEL-215681 CVE-2026-59857 vim: stack out-of-bounds write in
spell_soundfold_sal()

[2:8.0.1763-31.4]
- RHEL-215657 CVE-2026-52859 vim: out-of-bounds read in terminal
cell.chars[] loop

[2:8.0.1763-31.3]
- CVE-2026-73072 vim: heap buffer overflow in set_sofo()

[2:8.0.1763-31.2]
- CVE-2026-73078 vim: code injection in netrw via bookmarks

[2:8.0.1763-31.1]
- CVE-2026-73076 vim: code execution via .VimballRecord file


Related CVEs


CVE-2026-73073

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) vim-8.0.1763-32.0.1.el8_10.src.rpmbe27db50a989a1a5e601bdb35956e9cdefd68e92f3edc4dfc8782aadf6208418-ol8_aarch64_appstream
vim-8.0.1763-32.0.1.el8_10.src.rpmbe27db50a989a1a5e601bdb35956e9cdefd68e92f3edc4dfc8782aadf6208418-ol8_aarch64_baseos_latest
vim-8.0.1763-32.0.1.el8_10.src.rpmbe27db50a989a1a5e601bdb35956e9cdefd68e92f3edc4dfc8782aadf6208418-ol8_aarch64_u10_baseos_patch
vim-X11-8.0.1763-32.0.1.el8_10.aarch64.rpmd4b13a4e06cef698d7411d8898ecb228c8dd65f2d5d03b5f5327bffe361a37a3-ol8_aarch64_appstream
vim-common-8.0.1763-32.0.1.el8_10.aarch64.rpm942e8f9d8940a1587ed6417d2e9b25e8a132c32a98b93e14272d9fa308abac82-ol8_aarch64_appstream
vim-enhanced-8.0.1763-32.0.1.el8_10.aarch64.rpm7f00fa90f5e8ec603bedda73ea652e18088f75545c85118216ea522b71bd9575-ol8_aarch64_appstream
vim-filesystem-8.0.1763-32.0.1.el8_10.noarch.rpmc13bda1ef5f9ecbff84a9cb0438296507e61ac697a6369dcbf22023ac7d73b58-ol8_aarch64_appstream
vim-minimal-8.0.1763-32.0.1.el8_10.aarch64.rpm9e0b94337233ef3c22e960af69c41c443c5220ba2d60e30db2afd5469ec2a148-ol8_aarch64_baseos_latest
vim-minimal-8.0.1763-32.0.1.el8_10.aarch64.rpm9e0b94337233ef3c22e960af69c41c443c5220ba2d60e30db2afd5469ec2a148-ol8_aarch64_u10_baseos_patch
Oracle Linux 8 (x86_64) vim-8.0.1763-32.0.1.el8_10.src.rpmbe27db50a989a1a5e601bdb35956e9cdefd68e92f3edc4dfc8782aadf6208418-ol8_x86_64_appstream
vim-8.0.1763-32.0.1.el8_10.src.rpmbe27db50a989a1a5e601bdb35956e9cdefd68e92f3edc4dfc8782aadf6208418-ol8_x86_64_baseos_latest
vim-8.0.1763-32.0.1.el8_10.src.rpmbe27db50a989a1a5e601bdb35956e9cdefd68e92f3edc4dfc8782aadf6208418-ol8_x86_64_u10_baseos_patch
vim-X11-8.0.1763-32.0.1.el8_10.x86_64.rpm344004bd6ffdd2be369deaae3dc1c98300a8394dec853b9e09d8237172cbcad8-ol8_x86_64_appstream
vim-common-8.0.1763-32.0.1.el8_10.x86_64.rpm379b637a188a72337a6585b6ef74c44d7ca07266e507d23631e91ad96829f250-ol8_x86_64_appstream
vim-enhanced-8.0.1763-32.0.1.el8_10.x86_64.rpm3a1783096a66103aeb133d54e277d8ec5701dbda456e121aff3f84e8f0410e90-ol8_x86_64_appstream
vim-filesystem-8.0.1763-32.0.1.el8_10.noarch.rpmc13bda1ef5f9ecbff84a9cb0438296507e61ac697a6369dcbf22023ac7d73b58-ol8_x86_64_appstream
vim-minimal-8.0.1763-32.0.1.el8_10.x86_64.rpm581e9f615a57fd8a17fe658873db7bb4b7a9d4f573ab7fc9c097356641fdf4bc-ol8_x86_64_baseos_latest
vim-minimal-8.0.1763-32.0.1.el8_10.x86_64.rpm581e9f615a57fd8a17fe658873db7bb4b7a9d4f573ab7fc9c097356641fdf4bc-ol8_x86_64_u10_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete