logo

Critical Command Injection Vulnerability in Fedora's perl-GD Library

ID: dad4bc26-2fd3-597f-9a89-7554962c3e62

STIX ID: report--dad4bc26-2fd3-597f-9a89-7554962c3e62

Feed Name: ThreatCluster

Threat Score
70/100

Date Published: 2026-06-19

Date Updated: 2026-06-19

...
...

A critical command injection vulnerability (CVE-2026-11526) was identified in the perl-GD library used in Fedora 43 and 44, enabling arbitrary command execution via the 2-argument form of open; patches were released and users are urged to update immediately using dnf to mitigate potential exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.