CVE-2026-3381: Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib
Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Compress::Raw::Zlibto a version that resolves this vulnerability.Fixed in 2.220
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3381?
CVE-2026-3381 is classified as a medium severity vulnerability due to the potential for exploitation through insecure versions of zlib.
How do I fix CVE-2026-3381?
To fix CVE-2026-3381, upgrade to Compress::Raw::Zlib version 2.220 or later which resolves the issue.
Which versions are affected by CVE-2026-3381?
CVE-2026-3381 affects all Compress::Raw::Zlib versions up to and including 2.219.
What software can be impacted by CVE-2026-3381?
CVE-2026-3381 can impact any software that relies on Compress::Raw::Zlib versions through 2.219 for data compression.
Is there an alternative to Compress::Raw::Zlib for avoiding CVE-2026-3381?
While upgrading is recommended, users may consider using other compression libraries that are not affected by this vulnerability.