[ubuntu/questing-security] libnet-cidr-lite-perl 0.22-2ubuntu0.25.10.1 (Accepted)

Kyle Kernick kyle.kernick at canonical.com
Mon Jun 8 15:53:55 UTC 2026


libnet-cidr-lite-perl (0.22-2ubuntu0.25.10.1) questing-security; urgency=medium

  * SECURITY UPDATE: IP ACL Bypass via find()
    - debian/patches/CVE-2026-40198.patch: Reject uncompressed IPv6 addresses
      with fewer than 8 groups in Lite.pm
    - debian/patches/CVE-2026-40199.patch: Do not include sentinel byte when
      packing IPv4 mapped addresses in Lite.pm
    - CVE-2026-40198
    - CVE-2026-40199

Date: 2026-06-05 18:55:35.647130+00:00
Changed-By: Kyle Kernick <kyle.kernick at canonical.com>
https://launchpad.net/ubuntu/+source/libnet-cidr-lite-perl/0.22-2ubuntu0.25.10.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Questing-changes mailing list