THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-73070 (MEDIUM 5.5) — Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c accepts unbounded client connections in socketserver_accept(), causing descriptors to overflow fd_set structures in src/channel.c and fixed-size struct pollfd array

[NVD] CVE-2026-73070 (MEDIUM 5.5) — Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c accepts unbounded client connections in socketserver_accept(), causing descriptors to overflow fd_set structures in src/channel.c and fixed-size struct pollfd array

lownvdPublished 2026-08-11

CVE-2026-73070 CVSS: 5.5 MEDIUM Published: 2026-08-11T16:17:38.257

Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c accepts unbounded client connections in socketserver_accept(), causing descriptors to overflow fd_set structures in src/channel.c and fixed-size struct pollfd arrays in src/os_unix.c, which allows a local process tha

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-73070