https://seclists.org/oss-sec/2026/q1/407: CVE-2026-4176: Perl versions from 5.9.4 befo5.40.4-RC1, from 5.41.0 befo5.42.2-RC1, from 5.43.0 befo5.43.9 contain a vulnerable version of Compss::Raw::Zlib
Published Mar 29, 2026
·Updated
Affected Software
1 affected component
Perl Perl>=5.9.4<5.40.4-RC1, >=5.41.0<5.42.2-RC1, >=5.43.0<5.43.9
Frequently Asked Questions
1
What is the severity of CVE-2026-4176?
CVE-2026-4176 is considered to be a moderate severity vulnerability due to its potential impact on Perl applications that use the affected library.
2
How do I fix CVE-2026-4176?
To fix CVE-2026-4176, upgrade Perl to version 5.40.4-RC1 or later for versions before 5.40.4-RC1, and to version 5.42.2-RC1 or later for versions before 5.42.2-RC1.
3
What versions of Perl are affected by CVE-2026-4176?
CVE-2026-4176 affects Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, and from 5.43.0 before 5.43.9.
4
What components are involved in CVE-2026-4176?
CVE-2026-4176 involves a vulnerability in the Compss::Raw::Zlib component of Perl.
5
How can I determine if I am vulnerable to CVE-2026-4176?
To determine if you are vulnerable to CVE-2026-4176, check your current Perl version and its compatibility with the versions specified in the vulnerability description.