UbuntuUpdates.org

Package "libgd-perl"

Name: libgd-perl

Description:

Perl module wrapper for libgd

Latest version: 2.78-1ubuntu0.24.04.1
Release: noble (24.04)
Level: updates
Repository: main
Homepage: https://github.com/lstein/Perl-GD

Links


Download "libgd-perl"


Other versions of "libgd-perl" in Noble

Repository Area Version
base main 2.78-1build3
security main 2.78-1ubuntu0.24.04.1

Changelog

Version: 2.78-1ubuntu0.24.04.1 2026-06-30 15:07:38 UTC

  libgd-perl (2.78-1ubuntu0.24.04.1) noble-security; urgency=medium

  * SECURITY UPDATE: command injection and file overwrite
    - debian/patches/CVE-2026-11526.patch: fix command injection via 2-arg
      open() in _make_filehandle in MANIFEST, lib/GD/Image.pm,
      lib/GD/Image_pm.PL, t/security_open.t.
    - CVE-2026-11526

 -- Marc Deslauriers <email address hidden> Tue, 16 Jun 2026 07:52:12 -0400

CVE-2026-11526 GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle. GD::Ima



About   -   Send Feedback to @ubuntu_updates