30
30
30
30
30
30
30
30
30
30
30
30
30
45
30
30
30
45
30
45
30
30
USN-8736-1: Perl vulnerabilities
Ubuntu issued USN-8736-1 fixing two Perl regex flaws that could cause denial of service, code execution, or security-restriction bypass.
Ubuntu released a security notice addressing two Perl vulnerabilities in regular expression handling. CVE-2026-15534 involves mishandling of large inputs during regex matching, enabling out-of-bounds heap reads or writes that could lead to denial of service or arbitrary code execution. CVE-2026-19487 involves incorrect matching for regexes with alternative branches, allowing security restrictions to be bypassed. Users are advised to apply the updated packages.
25
30
30
30
45
30
30
30
30
30
30
30
30
30
45
30
30
30