Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Ubuntu 24.10 Security Notice USN-7434-1: Perl Remote Code Execution

Ubuntu Large Esm H500
Perl could be made to crash or run programs if it processed specially crafted data.
==========================================================================
Ubuntu Security Notice USN-7434-1
April 14, 2025

perl vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 24.10
- Ubuntu 24.04 LTS
- Ubuntu 22.04 LTS

Summary:

Perl could be made to crash or run programs if it processed specially
crafted data.

Software Description:
- perl: Practical Extraction and Report Language

Details:

It was discovered that Perl incorrectly handled transliterating non-ASCII
bytes. A remote attacker could use this issue to cause Perl to crash,
resulting in a denial of service, or possibly execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 24.10
   perl                            5.38.2-5ubuntu0.1

Ubuntu 24.04 LTS
   perl                            5.38.2-3.2ubuntu0.1

Ubuntu 22.04 LTS
   perl                            5.34.0-3ubuntu1.4

In general, a standard system update will make all the necessary changes.

References:
   https://ubuntu.com/security/notices/USN-7434-1
   CVE-2024-56406

Package Information:
   https://launchpad.net/ubuntu/+source/perl/5.38.2-5ubuntu0.1
   https://launchpad.net/ubuntu/+source/perl/5.38.2-3.2ubuntu0.1
   https://launchpad.net/ubuntu/+source/perl/5.34.0-3ubuntu1.4

Ubuntu 24.10 Security Notice USN-7434-1: Perl Remote Code Execution

ubuntu
Calendar Grey April 14, 2025
Dist Ubuntu Esm H88
A critical Perl vulnerability impacts Ubuntu versions 18.04, 20.04, and 22.04, allowing potential unauthorized access. Users must update promptly for security.
Perl could be made to crash or run programs if it processed specially crafted data.

Summary

A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Perl could be made to crash or run programs if it processed specially crafted data. Software Description: - perl: Practical Extraction and Report Language Details: It was discovered that Perl incorrectly handled transliterating non-ASCII bytes. A remote attacker could use this issue to cause Perl to crash, resulting in a denial of service, or possibly execute arbitrary code.

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 perl 5.38.2-5ubuntu0.1 Ubuntu 24.04 LTS perl 5.38.2-3.2ubuntu0.1 Ubuntu 22.04 LTS perl 5.34.0-3ubuntu1.4 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-7434-1

CVE-2024-56406

Severity
critical
Lowest
Low
Medium
High
Critical

Ubuntu Security Notice USN-7434-1

Package Information

https://launchpad.net/ubuntu/+source/perl/5.38.2-5ubuntu0.1 https://launchpad.net/ubuntu/+source/perl/5.38.2-3.2ubuntu0.1 https://launchpad.net/ubuntu/+source/perl/5.34.0-3ubuntu1.4

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here