UbuntuUpdates.org

Package "libcpanel-json-xs-perl"

Name: libcpanel-json-xs-perl

Description:

module for fast and correct serialising to JSON

Latest version: 4.27-1ubuntu0.2
Release: jammy (22.04)
Level: security
Repository: main
Homepage: https://metacpan.org/release/Cpanel-JSON-XS

Links


Download "libcpanel-json-xs-perl"


Other versions of "libcpanel-json-xs-perl" in Jammy

Repository Area Version
base main 4.27-1build1
updates main 4.27-1ubuntu0.2

Changelog

Version: 4.27-1ubuntu0.2 2025-09-15 19:08:13 UTC

  libcpanel-json-xs-perl (4.27-1ubuntu0.2) jammy-security; urgency=medium

  * SECURITY UPDATE: integer overflow when parsing crafted JSON
    - debian/patches/CVE-2025-40929.patch: fix json_atof_scan1 overflows in
      XS.xs.
    - CVE-2025-40929

 -- Marc Deslauriers <email address hidden> Fri, 12 Sep 2025 07:34:26 -0400

Source diff to previous version
CVE-2025-40929 Cpanel::JSON::XS before version 4.40 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service

Version: 4.27-1ubuntu0.1 2024-02-28 15:07:02 UTC

  libcpanel-json-xs-perl (4.27-1ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: DoS or info disclosure via OOB accesses
    - debian/patches/CVE-2022-48623.patch: fix decode out-of-bounds in
      XS.xs.
    - CVE-2022-48623

 -- Marc Deslauriers <email address hidden> Fri, 23 Feb 2024 13:32:53 -0500

CVE-2022-48623 The Cpanel::JSON::XS package before 4.33 for Perl performs out-of-bounds accesses in a way that allows attackers to obtain sensitive information or c



About   -   Send Feedback to @ubuntu_updates