Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

Perl Compress::Raw::Zlib uses outdated, insecure zlib library

UBUNTU-CVE-2026-3381
Summary

Compress::Raw::Zlib, a Perl library, includes an outdated zlib library that may have security weaknesses. This affects users who rely on Compress::Raw::Zlib for data compression. To stay secure, update to Compress::Raw::Zlib version 2.220 or later.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
canonical perl All versions
canonical perl All versions
canonical libcompress-raw-zlib-perl All versions
canonical perl All versions
canonical libcompress-raw-zlib-perl All versions
canonical perl All versions
canonical libcompress-raw-zlib-perl All versions
Original title
Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes a copy of the zlib library. Compress::Raw::Zlib version 2.220 includes zl...
Original description
Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes a copy of the zlib library. Compress::Raw::Zlib version 2.220 includes zlib 1.3.2, which addresses findings fron the 7ASecurity audit of zlib. The includes fixs for CVE-2026-27171.
osv CVSS3.1 9.8
Published: 5 Mar 2026 · Updated: 13 Mar 2026 · First seen: 9 Mar 2026