PT-2026-22420 · Vim+4 · Vim+4
Ehdgks0627
·
Published
2026-02-27
·
Updated
2026-05-24
·
CVE-2026-28421
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Vim versions prior to 9.2.0077
Description
Vim is an open-source, command-line text editor. Versions prior to 9.2.0077 contain a heap-buffer-overflow and a segmentation fault (SEGV) within the swap file recovery logic. These issues are triggered by unvalidated fields read from crafted pointer blocks within a swap file.
Recommendations
Versions prior to 9.2.0077 should be updated to version 9.2.0077 or later.
Exploit
Fix
DoS
RCE
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linuxmint
Red Os
Rocky Linux
Ubuntu
Vim