Read and write compressed data
Go to file
RHEL Packaging Agent 37fd0fc79f Fix CVE-2026-48962 in perl-IO-Compress File::GlobMapper
Backport fix for CVE-2026-48962 which removes the use of eval
in File::GlobMapper to prevent arbitrary code execution. The
patch combines two upstream commits: f2db247 (primary fix
removing eval usage) and 3651e9e (regression fix for wildcard
replacement after ordinary letters).

CVE: CVE-2026-48962
Upstream patches:
 - f2db247bf9.patch
 - 3651e9eb3f.patch
Resolves: RHEL-180419

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-07-28 13:27:12 +00:00
.fmf Package tests 2021-03-01 16:15:35 +01:00
plans Package tests 2021-03-01 16:15:35 +01:00
tests Update tests and gating.yaml 2024-07-09 17:43:44 +02:00
.gitignore Update to 2.037 (support streamed stored content in IO::Uncompress::Unzip) 2011-06-22 09:58:34 +01:00
gating.yaml Update tests and gating.yaml 2024-07-09 17:43:44 +02:00
perl-IO-Compress-2.212-CVE-2026-48962.patch Fix CVE-2026-48962 in perl-IO-Compress File::GlobMapper 2026-07-28 13:27:12 +00:00
perl-IO-Compress.rpmlintrc 2.084 bump 2019-01-07 14:01:35 +00:00
perl-IO-Compress.spec Fix CVE-2026-48962 in perl-IO-Compress File::GlobMapper 2026-07-28 13:27:12 +00:00
sources Update to 2.212 2024-07-17 14:23:22 +02:00