Mageia Security Updates Address Critical Perl Vulnerabilities

Mageia Security Updates Address Critical Perl Vulnerabilities

First seen 4 Aug 2026, 09:20 UTC Linuxsecurity 71% similarity 57.8

Article Content

Browse articles
ThreatCluster

Mageia has released security updates for two significant vulnerabilities affecting Perl packages. CVE-2026-8594, published on May 30, 2026, impacts Text::LineFold versions through 2019.001, allowing for output duplication based on special break characters. CVE-2026-11526, published on June 14, 2026, affects GD versions before 2.86, enabling OS command injection and file overwrite through improper handling of filename arguments. Both vulnerabilities pose risks to systems running affected versions of these Perl packages. Users are advised to update their systems promptly to mitigate potential exploits. The vulnerabilities were confirmed by Mageia's advisory updates on August 3, 2026.

Key Points: • CVE-2026-8594 allows output duplication in Perl's Text::LineFold package. • CVE-2026-11526 enables OS command injection in Perl's GD package. • Mageia advises immediate updates to mitigate risks from these vulnerabilities.

ThreatCluster AI How this analysis works

Timeline

2026-05-30
CVE-2026-8594 published
A vulnerability in Text::LineFold allows output duplication, affecting versions through 2019.001.
Linuxsecurity
2026-06-14
CVE-2026-11526 published
GD versions before 2.86 for Perl are vulnerable to OS command injection and file overwrite.
Linuxsecurity
2026-08-03
Mageia releases security updates
Mageia issued updates addressing the vulnerabilities in Perl's Text::LineFold and GD packages.
Linuxsecurity

Community

Browse all →

Tracked Entities in This Story