[CLSA-2026:1785427487] vim: Fix of 4 CVEs
Type:
security
Severity:
Important
Release date:
2026-07-30 16:05:02 UTC
Description:
- CVE-2022-0213: bound the space appended to the window status line so it cannot be written past the end of NameBuff - CVE-2024-43802: check that the typeahead buffer has room before advancing the offset when flushing mapped characters - CVE-2026-28422: account for the byte length of a multi-byte fill character when sizing the status line buffer and when padding item groups - CVE-2022-0351: limit expression recursion depth so a deeply nested condition cannot exhaust the stack
Updated packages:
  • vim-X11-8.2.2637-22.el9_2.1.tuxcare.els40.x86_64.rpm
    sha:4e22e09b62ed07ca1d3149447ce606c19d088e02a192730766feec4762f6b885
  • vim-common-8.2.2637-22.el9_2.1.tuxcare.els40.x86_64.rpm
    sha:d253b71f4c3a8b7532f0cf48dc866d73a357565cc50d039a0a518674c596a784
  • vim-enhanced-8.2.2637-22.el9_2.1.tuxcare.els40.x86_64.rpm
    sha:4aa6ef931593b5a93e2c945e93006ed169358a23cd40d4e3fa7fe1fed29f250f
  • vim-filesystem-8.2.2637-22.el9_2.1.tuxcare.els40.noarch.rpm
    sha:6eea1529d87feca3a59730131fdcf87e08590455c0d0f3b6945f04e017ca48fe
  • vim-minimal-8.2.2637-22.el9_2.1.tuxcare.els40.x86_64.rpm
    sha:4258173397b7de12e638fd02d3fc9a0f9911c84132d84aaae2771876b51ee57f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.