Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-42307

Опубликовано: 08 мая 2026
Источник: redhat
CVSS3: 4.4
EPSS Низкий

Описание

Vim is an open source, command line text editor. Prior to version 9.2.0383, an OS command injection vulnerability exists in the netrw standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the sftp:// or file:// protocol handlers), an attacker can execute arbitrary shell commands with the privileges of the Vim process. This issue has been patched in version 9.2.0383.

A flaw was found in Vim’s netrw plugin. Improper sanitization of specially crafted filenames or URLs could allow shell metacharacters to be included in temporary filenames passed to external commands. A local attacker could exploit this issue to trigger unintended shell command execution when a user opens malicious content using affected netrw functionality.

Отчет

This vulnerability affects Vim’s netrw plugin URL and file handling functionality. Red Hat Product Security has assessed this issue as a Moderate severity vulnerability. A local attacker may craft malicious filenames or URLs containing shell metacharacters that trigger unintended shell command execution when opened by a victim using affected netrw functionality in Vim. Successful exploitation requires user interaction because the victim must open attacker-controlled content. Red Hat therefore assessed the Confidentiality and Integrity impacts as Low (C:L/I:L), with no direct Availability impact (A:N).

Меры по смягчению последствий

Red Hat is not aware of a practical temporary workaround that fully mitigates this issue or meets Red Hat Product Security's standards for usability, deployment, applicability, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10vimFix deferred
Red Hat Enterprise Linux 6vimFix deferred
Red Hat Enterprise Linux 7vimFix deferred
Red Hat Enterprise Linux 8vimFix deferred
Red Hat Enterprise Linux 9vimFix deferred
Red Hat OpenShift Container Platform 4rhcosFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-78
https://bugzilla.redhat.com/show_bug.cgi?id=2468403Vim: Vim: Arbitrary code execution via OS command injection in netrw plugin

EPSS

Процентиль: 51%
0.00774
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.4
ubuntu
3 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2.0383, an OS command injection vulnerability exists in the netrw standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the sftp:// or file:// protocol handlers), an attacker can execute arbitrary shell commands with the privileges of the Vim process. This issue has been patched in version 9.2.0383.

CVSS3: 4.4
nvd
3 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2.0383, an OS command injection vulnerability exists in the netrw standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the sftp:// or file:// protocol handlers), an attacker can execute arbitrary shell commands with the privileges of the Vim process. This issue has been patched in version 9.2.0383.

CVSS3: 4.4
debian
3 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2. ...

CVSS3: 4.4
fstec
3 месяца назад

Уязвимость текстового редактора vim, связанная с непринятием мер по нейтрализации специальных элементов, используемых в команде операционной системы, позволяющая нарушителю выполнить произвольные команды

CVSS3: 4.4
redos
около 1 месяца назад

Уязвимость vim

EPSS

Процентиль: 51%
0.00774
Низкий

4.4 Medium

CVSS3