{"id":"openSUSE-SU-2026:21437-1","summary":"Security update for perl-Net-DNS","details":"This update for perl-Net-DNS fixes the following issues:\n\nChanges in perl-Net-DNS:\n\n- CVE-2026-64194: Fixed a Denial of Service via deep DNS compression pointer chains [bsc#1272214]\n- CVE-2026-64193: Fixed a remote execution injection [bsc#1272212]\n","modified":"2026-07-24T17:16:08.604357306Z","published":"2026-07-22T20:52:16Z","related":["CVE-2026-64193","CVE-2026-64194"],"upstream":["CVE-2026-64193","CVE-2026-64194"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1272212"},{"type":"REPORT","url":"https://bugzilla.suse.com/1272214"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-64193"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-64194"}],"affected":[{"package":{"name":"perl-Net-DNS","ecosystem":"openSUSE:Leap 16.0","purl":"pkg:rpm/opensuse/perl-Net-DNS&distro=openSUSE%20Leap%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.460.0-bp160.2.1"}]}],"ecosystem_specific":{"binaries":[{"perl-Net-DNS":"1.460.0-bp160.2.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21437-1.json"}}],"schema_version":"1.7.5"}