Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-4176

Опубликовано: 29 мар. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib.

Compress::Raw::Zlib is included in the Perl package as a dual-life core module, and is vulnerable to CVE-2026-3381 due to a vendored version of zlib which has several vulnerabilities, including CVE-2026-27171. The bundled Compress::Raw::Zlib was updated to version 2.221 in Perl blead commit c75ae9cc164205e1b6d6dbd57bd2c65c8593fe94.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:perl:perl:*:*:*:*:*:*:*:*
Версия от 5.9.4 (включая) до 5.40.4 (исключая)
cpe:2.3:a:perl:perl:*:*:*:*:*:*:*:*
Версия от 5.41.0 (включая) до 5.42.2 (исключая)
cpe:2.3:a:perl:perl:*:*:*:*:*:*:*:*
Версия от 5.43.0 (включая) до 5.43.9 (исключая)

EPSS

Процентиль: 49%
0.00676
Низкий

9.8 Critical

CVSS3

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 9.8
ubuntu
4 месяца назад

Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib. Compress::Raw::Zlib is included in the Perl package as a dual-life core module, and is vulnerable to CVE-2026-3381 due to a vendored version of zlib which has several vulnerabilities, including CVE-2026-27171. The bundled Compress::Raw::Zlib was updated to version 2.221 in Perl blead commit c75ae9cc164205e1b6d6dbd57bd2c65c8593fe94.

CVSS3: 7
redhat
4 месяца назад

Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib. Compress::Raw::Zlib is included in the Perl package as a dual-life core module, and is vulnerable to CVE-2026-3381 due to a vendored version of zlib which has several vulnerabilities, including CVE-2026-27171. The bundled Compress::Raw::Zlib was updated to version 2.221 in Perl blead commit c75ae9cc164205e1b6d6dbd57bd2c65c8593fe94.

msrc
4 месяца назад

Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib

CVSS3: 9.8
debian
4 месяца назад

Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2- ...

CVSS3: 9.8
redos
20 дней назад

Уязвимость python-relenv

EPSS

Процентиль: 49%
0.00676
Низкий

9.8 Critical

CVSS3

Дефекты

NVD-CWE-Other