UbuntuUpdates.org

Package "libgd-perl"

Name: libgd-perl

Description:

Perl module wrapper for libgd

Latest version: 2.84-2ubuntu0.1
Release: resolute (26.04)
Level: security
Repository: main
Homepage: https://github.com/lstein/Perl-GD

Links


Download "libgd-perl"


Other versions of "libgd-perl" in Resolute

Repository Area Version
base main 2.84-2
updates main 2.84-2ubuntu0.1

Changelog

Version: 2.84-2ubuntu0.1 2026-06-30 13:08:17 UTC

  libgd-perl (2.84-2ubuntu0.1) resolute-security; urgency=medium

  * SECURITY UPDATE: command injection and file overwrite
    - debian/patches/CVE-2026-11526.patch: fix command injection via 2-arg
      open() in _make_filehandle in MANIFEST, lib/GD/Image.pm,
      lib/GD/Image_pm.PL, t/security_open.t.
    - CVE-2026-11526

 -- Marc Deslauriers <email address hidden> Tue, 16 Jun 2026 07:50:17 -0400

CVE-2026-11526 GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle. GD::Ima



About   -   Send Feedback to @ubuntu_updates