Ubuntu Security Update USN-8304-1: Vim vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
6,330
Reaction score
93
Credits
-1,257
Joshua Rogers discovered that Vim incorrectly handled certain URL schemes in the netrw plugin. An attacker could possibly use this issue to execute arbitrary commands. (CVE-2026-42307) It was discovered that Vim incorrectly handled command-line completion for the :find command. An attacker could possibly use this issue to execute arbitrary commands. (CVE-2026-44656) Daniel Cervera discovered that Vim incorrectly handled loading spell files. An attacker could possibly use this issue to cause a denial of service, or to execute arbitrary code. (CVE-2026-45130)

Continue reading...
 


Follow Linux.org

Staff online


Top