Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-34714

Опубликовано: 30 мар. 2026
Источник: redhat
CVSS3: 8.6
EPSS Низкий

Описание

Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.

A flaw was found in Vim. This vulnerability allows an attacker to execute malicious code on a user's system. This occurs when a user opens a specially crafted file, leading to immediate code execution due to a vulnerability in how Vim handles expressions within its tabpanel feature.

Отчет

The vulnerable functionality (tabpanel) was introduced in upstream Vim beginning with patch 9.1.1391. The versions of Vim provided in RHEL, including RHEL 10 (9.1.083) and earlier releases, are based on versions prior to this change and do not include the affected code. As a result, Red Hat Enterprise Linux is not impacted.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10vimNot affected
Red Hat Enterprise Linux 6vimNot affected
Red Hat Enterprise Linux 7vimNot affected
Red Hat Enterprise Linux 8vimNot affected
Red Hat Enterprise Linux 9vimNot affected
Red Hat OpenShift Container Platform 4rhcosNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-917
https://bugzilla.redhat.com/show_bug.cgi?id=2453139vim: Vim: Arbitrary code execution via crafted file

EPSS

Процентиль: 44%
0.00588
Низкий

8.6 High

CVSS3

Связанные уязвимости

CVSS3: 9.2
ubuntu
4 месяца назад

Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.

CVSS3: 9.2
nvd
4 месяца назад

Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.

CVSS3: 8.5
msrc
4 месяца назад

Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.

CVSS3: 9.2
debian
4 месяца назад

Vim before 9.2.0272 allows code execution that happens immediately upo ...

CVSS3: 9.2
github
4 месяца назад

Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, because %{expr} injection occurs with tabpanel lacking P_MLE.

EPSS

Процентиль: 44%
0.00588
Низкий

8.6 High

CVSS3