[El-errata] ELSA-2025-17742 Moderate: Oracle Linux 9 vim security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Oct 14 14:51:06 UTC 2025


Oracle Linux Security Advisory ELSA-2025-17742

http://linux.oracle.com/errata/ELSA-2025-17742.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
vim-X11-8.2.2637-22.0.1.el9_6.1.x86_64.rpm
vim-common-8.2.2637-22.0.1.el9_6.1.x86_64.rpm
vim-enhanced-8.2.2637-22.0.1.el9_6.1.x86_64.rpm
vim-filesystem-8.2.2637-22.0.1.el9_6.1.noarch.rpm
vim-minimal-8.2.2637-22.0.1.el9_6.1.x86_64.rpm

aarch64:
vim-X11-8.2.2637-22.0.1.el9_6.1.aarch64.rpm
vim-common-8.2.2637-22.0.1.el9_6.1.aarch64.rpm
vim-enhanced-8.2.2637-22.0.1.el9_6.1.aarch64.rpm
vim-filesystem-8.2.2637-22.0.1.el9_6.1.noarch.rpm
vim-minimal-8.2.2637-22.0.1.el9_6.1.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/vim-8.2.2637-22.0.1.el9_6.1.src.rpm

Related CVEs:

CVE-2025-53905
CVE-2025-53906




Description of changes:

[8.2.2637-22.0.1.1]
- Remove upstream references [Orabug: 31197557]

[2:8.2.2637-22.1]
- RHEL-112006 CVE-2025-53905 vim: Vim path traversial
- RHEL-112010 CVE-2025-53906 vim: Vim path traversal

[2:8.2.2637-22]
- RHEL-2159 vim: Heap Use After Free in function ins_compl_get_exp in vim/vim

[2:8.2.2637-21]
- RHEL-40602 CVE-2021-3903 vim: heap-based buffer overflow vulnerability




More information about the El-errata mailing list