Description:
Net::CIDR::Lite versions before 0.24 for Perl does not properly validate
IP address and CIDR mask inputs, which may allow IP ACL bypass.
(CVE-2026-45190)
Net::CIDR::Lite versions before 0.24 for Perl does not properly consider
extraneous zero characters in CIDR mask values, which may allow IP ACL
bypass. (CVE-2026-45191)
- https://bugs.mageia.org/show_bug.cgi?id=35506
- https://www.openwall.com/lists/oss-security/2026/05/10/6
- https://www.openwall.com/lists/oss-security/2026/05/10/7
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-45190
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-45191
- 9/core/perl-Net-CIDR-Lite-0.240.0-1.mga9
Get the latest Linux and open source security news straight to your inbox.