CVE-2026-34982
Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in Vim allows arbitrary OS command execution when a user opens a crafted file. The `complete`, `guitabtooltip` and `printheader` options are missing the `P_MLE` flag, allowing a modeline to be executed. Additionally, the `mapset()` function lacks a `check_secure()` call, allowing it to be abused from sandboxed expressions. Commit 9.2.0276 fixes the issue.
वीकनेस
Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in Vim allows arbitrary OS command execution when a user opens a crafted file. The `complete`, `guitabtooltip` and `printheader` options are missing the `P_MLE` flag, allowing a modeline to be executed. Additionally, the `mapset()` function lacks a `check_secure()` call, allowing it to be abused from sandboxed expressions. Commit 9.2.0276 fixes the issue.
प्रभावित प्रोडक्ट
- vim vim
संदर्भ
- https://github.com/vim/vim/commit/75661a66a1db1e1f3f1245c615
- https://github.com/vim/vim/releases/tag/v9.2.0276
- https://github.com/vim/vim/security/advisories/GHSA-8h6p-m6gr-mpw9
- http://www.openwall.com/lists/oss-security/2026/04/01/1
- https://access.redhat.com/errata/RHSA-2026:11389
- https://access.redhat.com/errata/RHSA-2026:11509
हमलावर से पहले बग आप ढूँढें।
GitHub से साइन इन करें और एक मिनट से भी कम में अपना पहला ऑडिट चलाएँ। फ़्री प्लान के लिए क्रेडिट कार्ड की ज़रूरत नहीं।