VDB

CISA-2026-3381

CISA-2026-3381 PUBLISHED CVSS 9.8 CRITICAL

Reported by CPANSec · Published March 5, 2026

Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes a copy of the zlib library. Compress::Raw::Zlib version 2.220 includes zlib 1.3.2, which addresses findings fron the 7ASecurity audit of zlib. The includes fixs for CVE-2026-27171.

Risk Scores

CVSS 3.1
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
PMQSCompress::Raw::Zlib0
PMQSCompress::Raw::Zlib0, 0

Timeline

  • Mar 5, 2026 CVE Published
  • Mar 11, 2026 CVE Updated

References

  • release-notes
  • release-notes
  • technical-description
  • vendor-advisoryrelatedvdb-entry
  • issue-tracking
Open in Interactive Console →
$ Console Community · 100/wk Open console ›