Vim Security Update — AlmaLinux 8 (ALSA-2026:48703)
This is a security release for AlmaLinux 8. Update the product on every affected server to the patched release — there is no workaround, and unpatched servers remain exposed until updated.
Команды исправления
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Что это значит по лицензии SharedLicense
Your SharedLicense license itself is not affected — this is a change in AlmaLinux 8 software, not in licensing. Update the product through its standard update channel. Licenses keep working through updates; nothing needs re-issuing or re-activating.
Vim (Vi IMproved) is an updated and improved version of the vi editor.
Security Fix(es):
* vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() (CVE-2026-57455)
* vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion (CVE-2026-57456)
* vim: V…
Type:
security
Severity:
important
Release date:
2026-07-30
Description:
Vim (Vi IMproved) is an updated and improved version of the vi editor.
Security Fix(es):
* vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() (CVE-2026-57455)
* vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion (CVE-2026-57456)
* vim: Vim: Out-of-bounds Write in Spell File Word Count (CVE-2026-55693)
* vim: Vim: Arbitrary command execution via crafted tags file in C omni-completion (CVE-2026-59858)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References:
Updated packages listed below:
| Architecture | Package | Checksum |
| aarch64 | vim-X11-8.0.1763-31.el8_10.aarch64.rpm | 05b863d241a8fa51458010168285cdead153401b5689e7cf3677173abdebbf54 |
| aarch64 | vim-enhanced-8.0.1763-31.el8_10.aarch64.rpm | 4a7ce2fb4abb05c25e0b60b73d1b4b3dbc4c4c234ffbddec6482d16a95766874 |
| aarch64 | vim-minimal-8.0.1763-31.el8_10.aarch64.rpm | 651840fd9de516a713512e57a84bc6b8213115ea7d2e8a00f1aa44804fcfb53f |
| aarch64 | vim-common-8.0.1763-31.el8_10.aarch64.rpm | edabdba25b5ce323e163caa497e4855281519b0976be6af7a8e9f19e09e0c4bb |
| noarch | vim-filesystem-8.0.1763-31.el8_10.noarch.rpm | 8646bcb5c3d8b2ec80b1249595f22bd07424e771f0950ce64e5673c9075739a5 |
| ppc64le | vim-minimal-8.0.1763-31.el8_10.ppc64le.rpm | 1229027c6293fa1621b98c5044eaa32a710e2a3fac73f1aba30b8209a37caa43 |
| ppc64le | vim-enhanced-8.0.1763-31.el8_10.ppc64le.rpm | a5fbf9f1f73e00497cb0867b39c61e487f3735ec7ac85ded5e44c07a28e7deb1 |
| ppc64le | vim-common-8.0.1763-31.el8_10.ppc64le.rpm | aa8471c27431711cc2fd050f06ae754917636d052cf4903803c4feb4d2a7595c |
| ppc64le | vim-X11-8.0.1763-31.el8_10.ppc64le.rpm | e459330cedf14ca3bb475d28a738fe9ee6310111b98a2f7477b10d402a26f9b6 |
| s390x | vim-minimal-8.0.1763-31.el8_10.s390x.rpm | 49072c1650d595c443c34ce637ebb62ba09e361d1212498f1f226f3b82e5a46d |
| s390x | vim-enhanced-8.0.1763-31.el8_10.s390x.rpm | 4cf93fe26988e8554f80577baace2157d6217b2162b241278e3ac58c6abcc29e |
| s390x | vim-X11-8.0.1763-31.el8_10.s390x.rpm | d960bffbd4f6602ea6a9434ff66ac16317b6e4a6499fa764fc7e4b42c3a5465c |
| s390x | vim-common-8.0.1763-31.el8_10.s390x.rpm | fef11e4e5ad9043e767bb0ce97ca91be1a13f0f0463cff2e66b3d3ce5e191afe |
| x86_64 | vim-minimal-8.0.1763-31.el8_10.x86_64.rpm | 229d38671073603676517a28d2d3ca8608253f944b4f057ac002af82f9bd9f2b |
| x86_64 | vim-enhanced-8.0.1763-31.el8_10.x86_64.rpm | 369098ac7957c2e9b301c9091b9c2d906a7298f68d8413877e1475d4f06ad315 |
| x86_64 | vim-X11-8.0.1763-31.el8_10.x86_64.rpm | 7bcea463717c412cc4bd336b55886d627f39c7997b6cb8a7adb33bcfd3ea6da9 |
| x86_64 | vim-common-8.0.1763-31.el8_10.x86_64.rpm | b2bca8b7540f3fbc41727ffbae0c081866a4f9def71ee9ef75a6c42f59e679a8 |
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.
Источники
Предупреждения о безопасности
Похожие предупреждения
Проверьте систему на уязвимости
Выберите продукт и операционную систему, чтобы увидеть точные команды исправления.
Проверьте свою систему