Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.3
Vim for Linux: Arbitrary Code Execution Risk
published 26 days ago
Summary
A security issue has been identified in the Vim text editor for Linux systems. If exploited, it could allow attackers to execute arbitrary code, potentially leading to unauthorized access or data theft. To mitigate this risk, ensure that your Vim software is updated to the latest version.
What to do
- Update redhat vim-common to version 2:8.2.2637-26.el9_8.10.
- Update redhat vim to version 2:8.2.2637-26.el9_8.10.
Affected software
| Ecosystem | Vendor | Product | Affected versions |
|---|---|---|---|
| Red Hat:enterprise_linux:9::appstream | redhat | vim-common |
< 2:8.2.2637-26.el9_8.10 Fix: upgrade to 2:8.2.2637-26.el9_8.10
|
| Red Hat:enterprise_linux:9::baseos | redhat | vim |
< 2:8.2.2637-26.el9_8.10 Fix: upgrade to 2:8.2.2637-26.el9_8.10
|
Original advisory text
Red Hat Security Advisory: vim security update
References
- https://access.redhat.com/errata/RHSA-2026:38511 Vendor Advisory
- https://access.redhat.com/security/updates/classification/#important Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2477915 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2487964 Third Party Advisory
- https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_38511.... Vendor Advisory
- https://access.redhat.com/security/cve/CVE-2026-46483 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-46483 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-46483 Vendor Advisory
- https://github.com/vim/vim/commit/3fb5e58fbc63d86a3e65f1a141b0d67af2aa38a1 Third Party Advisory
- https://github.com/vim/vim/releases/tag/v9.2.0479 Third Party Advisory
- https://github.com/vim/vim/security/advisories/GHSA-2fpv-9ff7-xg5w Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2026-47162 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-47162 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-47162 Vendor Advisory
- https://github.com/vim/vim/commit/f08ab2f4d7d2947c8dd6c179ae08ee6146a2694b Third Party Advisory
- https://github.com/vim/vim/releases/tag/v9.2.0495 Third Party Advisory
- https://github.com/vim/vim/security/advisories/GHSA-crm5-rh6j-2c7c Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2026-47167 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2487996 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-47167 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-47167 Vendor Advisory
- https://github.com/vim/vim/commit/a65a52d684bc58535ad28a4ae824d22e76399934 Third Party Advisory
- https://github.com/vim/vim/releases/tag/v9.2.0496 Third Party Advisory
- https://github.com/vim/vim/security/advisories/GHSA-4473-94jm-w5x9 Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2026-52858 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2487981 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-52858 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-52858 Vendor Advisory
- https://github.com/vim/vim/commit/4b850457e12e1a678dd209f2868154f7553cbf8d Third Party Advisory
- https://github.com/vim/vim/releases/tag/v9.2.0561 Third Party Advisory
- https://github.com/vim/vim/security/advisories/GHSA-52mc-rq6p-rc7c Third Party Advisory
Severity
7.3
High
CVSS 3.1: 7.3 (OSV)
Timeline
Published9 Aug 2026
Updated9 Aug 2026
First seen9 Aug 2026
Sources
RHSA-2026:38511 · OSV
Monitor software like this
Free during beta