------------------------------------------------------------------------- Debian LTS Advisory DLA-4761-1 [email protected] https://www.debian.org/lts/security/ Guilhem Moulin August 30, 2026 https://wiki.debian.org/LTS -------------------------------------------------------------------------
Package : libnet-dns-perl Version : 1.29-1+deb11u1 1.36-1+deb12u1 CVE ID : CVE-2026-64194 Debian Bug : 1142503 Steffen Ullrich discovered that libnet-dns-perl, a Perl module to perform DNS queries, was vulnerable to Denial of Service via deep RFC 1035 compression pointer chains. For Debian 11 bullseye, this problem has been fixed in version 1.29-1+deb11u1. For Debian 12 bookworm, this problem has been fixed in version 1.36-1+deb12u1. We recommend that you upgrade your libnet-dns-perl packages. For the detailed security status of libnet-dns-perl please refer to its security tracker page at: https://security-tracker.debian.org/tracker/libnet-dns-perl Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS
signature.asc
Description: PGP signature
