Skip to content
Ubuntu 20.04 Perl Critical DoS Buffer Overflow Advisory USN-8467

Ubuntu 20.04 Perl Critical DoS Buffer Overflow Advisory USN-8467

Linuxsecurity LinuxSecurity Advisories June 24, 2026

Several security issues were fixed in Perl. Software Description: - perl: Practical Extraction and Report Language Details: It was discovered that Perl's Archive::Tar module incorrectly handled symlink and hardlink targets during extraction. An attacker could use this issue to read or overwrite arbitrary files outside the extraction directory. (CVE-2026-42496) It was discovered that Perl had a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds. An attacker could use this issue to cause a denial of service or possibly execute arbitrary code. (CVE-2026-8376)

Several security issues were fixed in Perl.

Software Description:

- perl: Practical Extraction and Report Language

It was discovered that Perl's Archive::Tar module incorrectly handled

symlink and hardlink targets during extraction. An attacker could use this

issue to read or overwrite arbitrary files outside the extraction

directory. (CVE-2026-42496)

It was discovered that Perl had a heap buffer overflow when compiling

regular expressions with a repeated fixed string on 32-bit builds. An

attacker could use this issue to cause a denial of service or possibly

execute arbitrary code. (CVE-2026-8376)

The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS libperl-dev 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro libperl5.30 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro perl 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro perl-base 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro perl-debug 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro perl-doc 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro perl-modules-5.30 5.30.0-9ubuntu0.5+esm2 Available with Ubuntu Pro Ubuntu 18.04 LTS libperl-dev 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro libperl5.26 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro perl 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro perl-base 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro perl-debug 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro perl-doc 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro perl-modules-5.26 5.26.1-6ubuntu0.7+esm2 Available with Ubuntu Pro Ubuntu 16.04 LTS libperl-dev 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro libperl5.22 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro perl 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro perl-base 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro perl-debug 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro perl-doc 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro perl-modules-5.22 5.22.1-9ubuntu0.9+esm2 Available with Ubuntu Pro Ubuntu 14.04 LTS libperl-dev 5.18.2-2ubuntu1.7+esm7 Available with Ubuntu Pro perl 5.18.2-2ubuntu1.7+esm7 Available with Ubuntu Pro perl-base 5.18.2-2ubuntu1.7+esm7 Available with Ubuntu Pro perl-debug 5.18.2-2ubuntu1.7+esm7 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes.

Ubuntu Security Notice USN-8467-1

Get the latest Linux and open source security news straight to your inbox.

Extracted Entities

Attack Types (1)

Companies (1)