Updated perl-XML-Bare packages fix security vulnerabilities
Publication date: 02 Sep 2026Modification date: 02 Sep 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-57074 , CVE-2026-13401
Description
XML::Bare versions through 0.53 for Perl have an unbounded character
lookahead.
XML::Bare versions through 0.53 for Perl will hang in an infinite loop
when parsing malformed attributes.
References
SRPMS
10/core
- perl-XML-Bare-0.530.0-26.mga10
9/core
- perl-XML-Bare-0.530.0-22.mga9