Vim is an open source, command line text editor. Prior to version 9.2.0076, a heap-based buffer overflow WRITE and an out-of-bounds READ exist in Vim's terminal emulator when processing maximum combining characters from Unicode supplementary planes. Version 9.2.0076 fixes the issue.
{
"cwe_ids": [
"CWE-122",
"CWE-125"
],
"cna_assigner": "GitHub_M",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/28xxx/CVE-2026-28420.json"
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-28420.json"
[
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "259103762407172107175050779232066208277",
"length": 1699.0
},
"source": "https://github.com/vim/vim/commit/bb6de2105b160e729c340631435cd62f3e69bd32",
"signature_type": "Function",
"id": "CVE-2026-28420-0b42f09f",
"target": {
"file": "src/terminal.c",
"function": "handle_pushline"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"146200493773228420153804765641940418619",
"244985050627330640346798804754348286724",
"155380467970987394649420813699802737244",
"211250720128354812661527349585948442653"
]
},
"source": "https://github.com/vim/vim/commit/bb6de2105b160e729c340631435cd62f3e69bd32",
"signature_type": "Line",
"id": "CVE-2026-28420-49214d89",
"target": {
"file": "src/version.c"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"86238134365946820443051979422316938732",
"112005848303550427001745588655166522672",
"227678537743638341055630548487043099658",
"54840044203397956308838918428375749270",
"270219421092970354247567323551244831521",
"306555319462579220991492162654405222805",
"167976848694858786275789052611856239156",
"333787731718133518920860356652332859054",
"146819506229527956038767108966728478226"
]
},
"source": "https://github.com/vim/vim/commit/bb6de2105b160e729c340631435cd62f3e69bd32",
"signature_type": "Line",
"id": "CVE-2026-28420-b8fd8fd4",
"target": {
"file": "src/terminal.c"
}
}
]