Back Linuxsecurity Mageia perl-GD Medium OS Command Injection Vuln 2026
Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges ×
Description: The updated package fixes a security vulnerability: GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle. (CVE-2026-11526)
Description: The updated package fixes a security vulnerability: GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle. (CVE-2026-11526)
- - - - - - - -
-
-
-
-
-
-
-
-
- 10/core/perl-GD-2.840.0-1.1.mga10 - 9/core/perl-GD-2.760.0-3.1.mga9
- 10/core/perl-GD-2.840.0-1.1.mga10
- 9/core/perl-GD-2.760.0-3.1.mga9
Publication date: 03 Aug 2026 URL: https: //advisories.mageia.org/MGASA-2026-0318.html Type: security CVE: CVE-2026-11526
Get the latest Linux and open source security news straight to your inbox.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
