Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-39881

Опубликовано: 08 апр. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5

Описание

Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in Vim's netbeans interface allows a malicious netbeans server to execute arbitrary Ex commands when Vim connects to it, via unsanitized strings in the defineAnnoType and specialKeys protocol messages. This vulnerability is fixed in 9.2.0316.

РелизСтатусПримечание
devel

needed

esm-infra-legacy/trusty

released

2:7.4.052-1ubuntu3.1+esm25
esm-infra-legacy/xenial

released

2:7.4.1689-3ubuntu1.5+esm31
esm-infra/bionic

released

2:8.0.1453-1ubuntu1.13+esm16
esm-infra/focal

released

2:8.1.2269-1ubuntu5.32+esm4
esm-infra/xenial

released

2:7.4.1689-3ubuntu1.5+esm31
jammy

released

2:8.2.3995-1ubuntu2.28
noble

released

2:9.1.0016-1ubuntu7.12
questing

released

2:9.1.0967-1ubuntu6.3
resolute

released

2:9.1.2141-1ubuntu4.1

Показывать по

EPSS

Процентиль: 46%
0.0062
Низкий

5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5
redhat
4 месяца назад

Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in Vim's netbeans interface allows a malicious netbeans server to execute arbitrary Ex commands when Vim connects to it, via unsanitized strings in the defineAnnoType and specialKeys protocol messages. This vulnerability is fixed in 9.2.0316.

CVSS3: 5
nvd
4 месяца назад

Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in Vim's netbeans interface allows a malicious netbeans server to execute arbitrary Ex commands when Vim connects to it, via unsanitized strings in the defineAnnoType and specialKeys protocol messages. This vulnerability is fixed in 9.2.0316.

CVSS3: 5
msrc
4 месяца назад

Vim Ex command injection in Vims NetBeans integration

CVSS3: 5
debian
4 месяца назад

Vim is an open source, command line text editor. Prior to 9.2.0316, a ...

suse-cvrf
2 месяца назад

Security update for vim

EPSS

Процентиль: 46%
0.0062
Низкий

5 Medium

CVSS3