Alerts This Week
Warning Icon 1 1,039
Alerts This Week
Warning Icon 1 1,039

Ubuntu 20.04 Perl Critical DoS Buffer Overflow Advisory USN-8467-1

ubuntu
Calendar Grey June 24, 2026
Dist Ubuntu Esm H88
Explore critical Perl security advisory USN-8467-1 for Ubuntu addressing denial of service and buffer overflow risks.
Several security issues were fixed in Perl.

Summary

Several security issues were fixed in Perl.

Software Description:

- perl: Practical Extraction and Report Language

Details:

It was discovered that Perl's Archive::Tar module incorrectly handled

symlink and hardlink targets during extraction. An attacker could use this

issue to read or overwrite arbitrary files outside the extraction

directory. (CVE-2026-42496)

It was discovered that Perl had a heap buffer overflow when compiling

regular expressions with a repeated fixed string on 32-bit builds. An

attacker could use this issue to cause a denial of service or possibly

execute arbitrary code. (CVE-2026-8376)

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.04 LTS
  libperl-dev                     5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro
  libperl5.30                     5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro
  perl                            5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro
  perl-base                       5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro
  perl-debug                      5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro
  perl-doc                        5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro
  perl-modules-5.30               5.30.0-9ubuntu0.5+esm2
                                  Available with Ubuntu Pro

Ubuntu 18.04 LTS
  libperl-dev                     5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro
  libperl5.26                     5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro
  perl                            5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro
  perl-base                       5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro
  perl-debug                      5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro
  perl-doc                        5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro
  perl-modules-5.26               5.26.1-6ubuntu0.7+esm2
                                  Available with Ubuntu Pro

Ubuntu 16.04 LTS
  libperl-dev                     5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro
  libperl5.22                     5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro
  perl                            5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro
  perl-base                       5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro
  perl-debug                      5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro
  perl-doc                        5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro
  perl-modules-5.22               5.22.1-9ubuntu0.9+esm2
                                  Available with Ubuntu Pro

Ubuntu 14.04 LTS
  libperl-dev                     5.18.2-2ubuntu1.7+esm7
                                  Available with Ubuntu Pro
  perl                            5.18.2-2ubuntu1.7+esm7
                                  Available with Ubuntu Pro
  perl-base                       5.18.2-2ubuntu1.7+esm7
                                  Available with Ubuntu Pro
  perl-debug                      5.18.2-2ubuntu1.7+esm7
                                  Available with Ubuntu Pro

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-8467-1

CVE-2026-8376

Severity
critical
Lowest
Low
Medium
High
Critical

Ubuntu Security Notice USN-8467-1

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here