Back Linuxsecurity Oracle 8 VIM Important Buffer Overflow and Code Execution ELSA-2026-66348
Artifactory Alert: Chained flaws let attackers gain admin control. Check your version now ×
[8.0.1763-31.0.1.el8_10.7] - Remove upstream references [Orabug: 31197557] - Added glibc-gconv-extra to common requires to provide ISO-8859-2 [Orabug: 34114984] [2:8.0.1763-31.7] - RHEL-253666 CVE-2026-28420 buffer overflow in terminal emulator [2:8.0.1763-31.6] - RHEL-215662 CVE-2026-55892 vim: stack out-of-bounds write in dump_prefixes() [2:8.0.1763-31.5] - RHEL-215681 CVE-2026-59857 vim: stack out-of-bounds write in spell_soundfold_sal() [2:8.0.1763-31.4] - RHEL-215657 CVE-2026-52859 vim: out-of-bounds read in terminal cell.chars[] loop [2:8.0.1763-31.3] - CVE-2026-73072 vim: heap buffer overflow in set_sofo() [2:8.0.1763-31.2] - CVE-2026-73078 vim: code injection in netrw via bookmarks [2:8.0.1763-31.1] - CVE-2026-73076 vim: code execution via .VimballRecord file
[8.0.1763-31.0.1.el8_10.7] - Remove upstream references [Orabug: 31197557] - Added glibc-gconv-extra to common requires to provide ISO-8859-2 [Orabug: 34114984] [2:8.0.1763-31.7] - RHEL-253666 CVE-2026-28420 buffer overflow in terminal emulator [2:8.0.1763-31.6] - RHEL-215662 CVE-2026-55892 vim: stack out-of-bounds write in dump_prefixes() [2:8.0.1763-31.5] - RHEL-215681 CVE-2026-59857 vim: stack out-of-bounds write in spell_soundfold_sal() [2:8.0.1763-31.4] - RHEL-215657 CVE-2026-52859 vim: out-of-bounds read in terminal cell.chars[] loop [2:8.0.1763-31.3] - CVE-2026-73072 vim: heap buffer overflow in set_sofo() [2:8.0.1763-31.2] - CVE-2026-73078 vim: code injection in netrw via bookmarks [2:8.0.1763-31.1] - CVE-2026-73076 vim: code execution via .VimballRecord file
vim-X11-8.0.1763-31.0.1.el8_10.7.x86_64.rpm vim-common-8.0.1763-31.0.1.el8_10.7.x86_64.rpm vim-enhanced-8.0.1763-31.0.1.el8_10.7.x86_64.rpm vim-filesystem-8.0.1763-31.0.1.el8_10.7.noarch.rpm vim-minimal-8.0.1763-31.0.1.el8_10.7.x86_64.rpm
vim-X11-8.0.1763-31.0.1.el8_10.7.x86_64.rpm vim-common-8.0.1763-31.0.1.el8_10.7.x86_64.rpm vim-enhanced-8.0.1763-31.0.1.el8_10.7.x86_64.rpm vim-filesystem-8.0.1763-31.0.1.el8_10.7.noarch.rpm vim-minimal-8.0.1763-31.0.1.el8_10.7.x86_64.rpm
vim-X11-8.0.1763-31.0.1.el8_10.7.aarch64.rpm vim-common-8.0.1763-31.0.1.el8_10.7.aarch64.rpm vim-enhanced-8.0.1763-31.0.1.el8_10.7.aarch64.rpm vim-filesystem-8.0.1763-31.0.1.el8_10.7.noarch.rpm vim-minimal-8.0.1763-31.0.1.el8_10.7.aarch64.rpm
vim-X11-8.0.1763-31.0.1.el8_10.7.aarch64.rpm vim-common-8.0.1763-31.0.1.el8_10.7.aarch64.rpm vim-enhanced-8.0.1763-31.0.1.el8_10.7.aarch64.rpm vim-filesystem-8.0.1763-31.0.1.el8_10.7.noarch.rpm vim-minimal-8.0.1763-31.0.1.el8_10.7.aarch64.rpm
Related CVEs: CVE-2026-28420 CVE-2026-52859 CVE-2026-55892 CVE-2026-59857 CVE-2026-73072 CVE-2026-73076 CVE-2026-73078
Get the latest News and Insights
Get the latest Linux and open source security news straight to your inbox.
Linux Security - Your source for Top Linux News, Advisories, HOWTOs and Feature Releases
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
