CVE-2026-107794

NameCVE-2026-107794
DescriptionExtUtils::Typemaps::STL::List versions before 1.07 for Perl allocate a ...
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1150541

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libextutils-typemaps-default-perl (PTS)forky, bookworm, trixie1.05-5vulnerable
sid1.07-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libextutils-typemaps-default-perlsource(unstable)1.07-11150541

Notes

https://lists.security.metacpan.org/cve-announce/msg/44246012/
https://rt.cpan.org/Public/Bug/Display.html?id=91213
Fixed by: https://github.com/tsee/extutils-typemap-default/commit/10f45bf0d00d3140499755c2ad49f8bf435851ac (ExtUtils-Typemaps-Default-1.07)
Fixed by: https://github.com/tsee/extutils-typemap-default/commit/3e6602d8a9db424e5842e001554bf268797e4de1 (ExtUtils-Typemaps-Default-1.07)

Search for package or bug name: Reporting problems