{"id":"RHSA-2026:28133","summary":"Red Hat Security Advisory: vim security update","modified":"2026-06-25T10:42:44Z","published":"2026-06-23T10:08:29Z","upstream":["CVE-2026-34982","CVE-2026-35177","CVE-2026-41411","CVE-2026-46483"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:28133"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#important"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2455400"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2455542"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2461614"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2477915"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_28133.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-34982"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-34982"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-34982"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2026/04/01/1"},{"type":"ARTICLE","url":"https://github.com/vim/vim/commit/75661a66a1db1e1f3f1245c615"},{"type":"ARTICLE","url":"https://github.com/vim/vim/releases/tag/v9.2.0276"},{"type":"ARTICLE","url":"https://github.com/vim/vim/security/advisories/GHSA-8h6p-m6gr-mpw9"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-35177"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-35177"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-35177"},{"type":"ARTICLE","url":"https://github.com/vim/vim/security/advisories/GHSA-jc86-w7vm-8p24"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-41411"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-41411"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-41411"},{"type":"ARTICLE","url":"https://github.com/vim/vim/commit/c78194e41d5a0b05b0ddf383b6679b1503f977fb"},{"type":"ARTICLE","url":"https://github.com/vim/vim/releases/tag/v9.2.0357"},{"type":"ARTICLE","url":"https://github.com/vim/vim/security/advisories/GHSA-cwgx-gcj7-6qh8"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-46483"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-46483"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-46483"},{"type":"ARTICLE","url":"https://github.com/vim/vim/commit/3fb5e58fbc63d86a3e65f1a141b0d67af2aa38a1"},{"type":"ARTICLE","url":"https://github.com/vim/vim/releases/tag/v9.2.0479"},{"type":"ARTICLE","url":"https://github.com/vim/vim/security/advisories/GHSA-2fpv-9ff7-xg5w"}],"affected":[{"package":{"name":"vim","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-X11","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-X11"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-X11-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-X11-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-common","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-common-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-common-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-debugsource","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-debugsource"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-enhanced","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-enhanced"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-enhanced-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-enhanced-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-filesystem","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-filesystem"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-minimal","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-minimal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-minimal-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::appstream","purl":"pkg:rpm/redhat/vim-minimal-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-X11","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-X11"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-X11-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-X11-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-common","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-common-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-common-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-debugsource","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-debugsource"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-enhanced","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-enhanced"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-enhanced-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-enhanced-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-filesystem","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-filesystem"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-minimal","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-minimal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}},{"package":{"name":"vim-minimal-debuginfo","ecosystem":"Red Hat:rhel_e4s:9.2::baseos","purl":"pkg:rpm/redhat/vim-minimal-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:8.2.2637-20.el9_2.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:28133.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N"}]}