Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:6502 https://access.redhat.com/errata/RHSA-2026:6502
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:6540 https://access.redhat.com/errata/RHSA-2026:6540
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:6539 https://access.redhat.com/errata/RHSA-2026:6539
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:6619 https://access.redhat.com/errata/RHSA-2026:6619
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:6617 https://access.redhat.com/errata/RHSA-2026:6617
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:6620 https://access.redhat.com/errata/RHSA-2026:6620
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION Via RHSA-2026:6725 https://access.redhat.com/errata/RHSA-2026:6725
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2026:6730 https://access.redhat.com/errata/RHSA-2026:6730
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:6729 https://access.redhat.com/errata/RHSA-2026:6729
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:6731 https://access.redhat.com/errata/RHSA-2026:6731
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:6736 https://access.redhat.com/errata/RHSA-2026:6736
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:6915 https://access.redhat.com/errata/RHSA-2026:6915
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:7711 https://access.redhat.com/errata/RHSA-2026:7711
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:8259 https://access.redhat.com/errata/RHSA-2026:8259
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.13 Via RHSA-2026:7239 https://access.redhat.com/errata/RHSA-2026:7239
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.19 Via RHSA-2026:7243 https://access.redhat.com/errata/RHSA-2026:7243
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.18 Via RHSA-2026:8423 https://access.redhat.com/errata/RHSA-2026:8423
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.16 Via RHSA-2026:10097 https://access.redhat.com/errata/RHSA-2026:10097
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.12 Via RHSA-2026:12274 https://access.redhat.com/errata/RHSA-2026:12274
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.14 Via RHSA-2026:15087 https://access.redhat.com/errata/RHSA-2026:15087
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.15 Via RHSA-2026:14773 https://access.redhat.com/errata/RHSA-2026:14773