Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-73075

Опубликовано: 11 авг. 2026
Источник: debian
EPSS Низкий

Описание

Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupwin.c can use a negative w_winrow for a text-property-anchored popup with clipwindow and opacity, indexing before the screen array instead of accounting for w_popup_topoff and causing an out-of-bounds read and conditional write. This issue is fixed in version 9.2.0843.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
vimfixed2:9.2.0858-1package
vimnot-affectedtrixiepackage
vimnot-affectedbookwormpackage
vimnot-affectedbullseyepackage

Примечания

  • https://github.com/vim/vim/security/advisories/GHSA-pmvp-6rcj-98p4

EPSS

Процентиль: 2%
0.00117
Низкий

Связанные уязвимости

ubuntu
17 дней назад

Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupwin.c can use a negative w_winrow for a text-property-anchored popup with clipwindow and opacity, indexing before the screen array instead of accounting for w_popup_topoff and causing an out-of-bounds read and conditional write. This issue is fixed in version 9.2.0843.

CVSS3: 4.4
redhat
17 дней назад

Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupwin.c can use a negative w_winrow for a text-property-anchored popup with clipwindow and opacity, indexing before the screen array instead of accounting for w_popup_topoff and causing an out-of-bounds read and conditional write. This issue is fixed in version 9.2.0843.

nvd
17 дней назад

Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupwin.c can use a negative w_winrow for a text-property-anchored popup with clipwindow and opacity, indexing before the screen array instead of accounting for w_popup_topoff and causing an out-of-bounds read and conditional write. This issue is fixed in version 9.2.0843.

msrc
6 дней назад

Vim: Out-of-bounds Access in Popup Opacity Handling

EPSS

Процентиль: 2%
0.00117
Низкий