[CLSA-2026:1784303737] Fix CVE(s): CVE-2026-13221, CVE-2026-57432
Type:
security
Severity:
Critical
Release date:
2026-07-17 15:56:04 UTC
Description:
* SECURITY UPDATE: regex trie 16-bit next-offset overflow (GH#23388) - debian/patches/fixes/CVE-2026-13221.patch: do not build a trie when the branch-to-tail delta would overflow the 16-bit next-offset field in S_study_chunk() in regcomp.c - CVE-2026-13221 * SECURITY UPDATE: integer overflow in pack/unpack structure sizing - debian/patches/fixes/CVE-2026-57432.patch: add I32 overflow check before the size accumulation in S_measure_struct() in pp_pack.c - CVE-2026-57432
Updated packages:
  • libperl-dev_5.22.1-9ubuntu0.9+tuxcare.els5_amd64.deb
    sha:9f0829f39eb91df6c4c80a8f3d61384d50e03125
  • libperl5.22_5.22.1-9ubuntu0.9+tuxcare.els5_amd64.deb
    sha:95b1df95eca478ade83b084245b9a5922d5b1168
  • perl_5.22.1-9ubuntu0.9+tuxcare.els5_amd64.deb
    sha:e0f261f71ab7d813d370cb82487d902f2e68356e
  • perl-base_5.22.1-9ubuntu0.9+tuxcare.els5_amd64.deb
    sha:08f84b25cd02f4101df8b879f6dfe0aaf144ee70
  • perl-debug_5.22.1-9ubuntu0.9+tuxcare.els5_amd64.deb
    sha:2804d4cae462a49e5583c04dcec8b28a3b15e636
  • perl-doc_5.22.1-9ubuntu0.9+tuxcare.els5_all.deb
    sha:0a33713bfe2afb39378ce65a1b7422bb004c581e
  • perl-modules-5.22_5.22.1-9ubuntu0.9+tuxcare.els5_all.deb
    sha:b9d28b25f335019468ba98ebd1095422d393726c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.