Advisories ยป MGASA-2026-0368

Updated perl-XML-Bare packages fix security vulnerabilities

Publication date: 02 Sep 2026
Modification date: 02 Sep 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-57074 , CVE-2026-13401

Description

XML::Bare versions through 0.53 for Perl have an unbounded character
lookahead.
XML::Bare versions through 0.53 for Perl will hang in an infinite loop
when parsing malformed attributes.
                

References

SRPMS

10/core

9/core