Advisories ยป MGASA-2026-0115

Updated perl-Net-CIDR-Lite packages fix security vulnerabilities

Publication date: 07 May 2026
Modification date: 07 May 2026
Type: security
Affected Mageia releases : 9
CVE: CVE-2026-40198 , CVE-2026-40199

Description

Net::CIDR::Lite versions before 0.23 for Perl does not validate IPv6
group count, which may allow IP ACL bypass. (CVE-2026-40198)
Net::CIDR::Lite versions before 0.23 for Perl mishandles IPv4 mapped
IPv6 addresses, which may allow IP ACL bypass. (CVE-2026-40199)
                

References

SRPMS

9/core