Critical Vulnerabilities in Mageia Perl Packages Addressed

Critical Vulnerabilities in Mageia Perl Packages Addressed

First seen 19 Jul 2026, 19:46 UTC Linuxsecurity 77% similarity 72.6

Article Content

Browse articles
ThreatCluster

Mageia has released updates for several Perl packages to address critical security vulnerabilities. Notable issues include CVE-2026-14803, which allows memory exhaustion in Mojo::JSON versions before 9.47, and CVE-2026-11625, affecting Bytes::Random::Secure versions through 0.29, which can expose internal state across forked processes. Additionally, CVE-2026-14895 highlights a regular expression denial of service in String::Util versions before 1.36. Lastly, CVE-2026-8829 addresses a heap corruption vulnerability in HTML::Entities versions before 3.84. These vulnerabilities could lead to significant service disruptions and potential exploitation if not patched. Users of Mageia 10 and earlier versions are advised to update their systems immediately to mitigate these risks.

Key Points: • Multiple critical vulnerabilities in Mageia Perl packages require immediate attention. • CVE-2026-14803 and CVE-2026-11625 could lead to severe service disruptions if exploited. • Users are urged to update affected packages to prevent potential exploitation.

ThreatCluster AI

Timeline

2026-06-04
CVE-2026-8829 published
HTML::Entities versions before 3.84 read freed heap memory, leading to potential exploitation.
Article 4
2026-06-26
CVE-2026-11625 published
Bytes::Random::Secure versions through 0.29 expose internal state across forked processes.
Article 2
2026-07-06
CVE-2026-14803 published
Mojo::JSON versions before 9.47 allow memory exhaustion via unbounded recursion.
Article 1
2026-07-07
CVE-2026-14895 published
String::Util versions before 1.36 are susceptible to regular expression denial of service.
Article 3
2026-07-19
Mageia releases updates for critical vulnerabilities
Mageia has issued updates for multiple Perl packages to address critical vulnerabilities identified in July 2026.
Article 1

Community

Browse all →