Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes a copy of the zlib library. Compress::Raw::Zlib version 2.220 includes zlib 1.3.2, which addresses findings fron the 7ASecurity audit of zlib.
The includes fixs for CVE-2026-27171.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Vulnerable Products 1
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Pmqs Compress\
cpe:2.3:a:pmqs:compress\:\:raw\:\:zlib:*:*:*:*:*:perl:*:*
|
— |
<= 2.219
|