[CLSA-2026:1779130441] vim: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2026-05-18 18:54:06 UTC
Description:
- CVE-2022-0261: fix heap-based buffer overflow in block_insert() in src/ops.c - CVE-2022-0318: fix heap-based buffer overflow in utf_head_off() in mbyte.c - CVE-2022-3520: clamp b_op_end.col >= 0 in do_put() to prevent Visual block put underflow
Updated packages:
  • vim-X11-8.0.1763-16.el8.tuxcare.els1.x86_64.rpm
    sha:1666e8a95b61665f83d9c45c276b4033412b1aed52fa1a7ca4cda79b3d97bd82
  • vim-common-8.0.1763-16.el8.tuxcare.els1.x86_64.rpm
    sha:e788f5d405b64842f3715bbb3983661979c1aefb3ca0e7cdba2a9dc4f23f945a
  • vim-enhanced-8.0.1763-16.el8.tuxcare.els1.x86_64.rpm
    sha:219cc7c48fba1aea0399ea90c5a346ea77ca2bc83d3bf54380acaecab7b23674
  • vim-filesystem-8.0.1763-16.el8.tuxcare.els1.noarch.rpm
    sha:c14bfbf3fb5c669c3084ec5f8c0b9753c7d19ae5b7662aec51c6e1bc02a46763
  • vim-minimal-8.0.1763-16.el8.tuxcare.els1.x86_64.rpm
    sha:92fa46267df098cf519aded395e58689bd3cf39131ea77485dd50c23488731c1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.