Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 41: FEDORA-2025-11fcc87c66 moderate: perl heap overflow

fedora
Calendar Grey April 22, 2025
Dist Fedora Esm H88
The latest Fedora 41 update mitigates a critical heap overflow vulnerability affecting Perl (CVE-2024-56406). It is crucial to implement this patch to enhance system security.
Fix CVE-2024-56406

Summary

Perl is a high-level programming language with roots in C, sed, awk and shell

scripting. Perl is good at handling processes and files, and is especially

good at handling text. Perl's hallmarks are practicality and efficiency.

While it is used to do a lot of different things, Perl's most common

applications are system administration utilities and web programming.

This is a metapackage with all the Perl bits and core modules that can be

found in the upstream tarball from perl.org.

If you need only a specific feature, you can install a specific package

instead. E.g. to handle Perl scripts with /usr/bin/perl interpreter,

install perl-interpreter package. See perl-interpreter description for more

details on the Perl decomposition into packages.

Update Information:

Fix CVE-2024-56406

Change Log

* Mon Apr 14 2025 Jitka Plesnikova - 4:5.40.2-515 - 5.40.2 bump (see )

References


[ 1 ] Bug #2359475 - CVE-2024-56406 perl: Perl 5.34, 5.36, 5.38 and 5.40 are vulnerable to a heap buffer overflow when transliterating non-ASCII bytes [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2359475

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-11fcc87c66' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: perl
Product: Fedora 41
Version: 5.40.2
Release: 515.fc41
Summary: Practical Extraction and Report Language

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here