Details:
Vim (Vi IMproved) is an updated and improved version of the vi editor.
Security Fix(es):
vim: arbitrary command execution via modeline sandbox bypass (CVE-2026-34982)
vim: zip.vim: Vim zip.vim plugin: Arbitrary file overwrite via path traversal bypass (CVE-2026-35177)
vim: Vim: Command injection allows arbitrary code execution via malicious tag files (CVE-2026-41411)
vim: command injection when decompressing .tgz archives (CVE-2026-46483)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
2:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.32:8.2.2637-22.el9_6.3Exploitability
AV:LAC:LPR:NUI:RScope
S:CImpact
C:HI:HA:N8.2/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N