Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Net::CIDR::Lite versions before 0.24 for Perl does not properly validate IP address and CIDR mask inputs, which may allow IP ACL bypass
Vulnerability Description
Net::CIDR::Lite versions before 0.24 for Perl does not properly validate IP address and CIDR mask inputs, which may allow IP ACL bypass. Inputs containing a trailing newline or non-ASCII digit characters pass the validators but are then re-encoded by the parser to a different address than the input string spelled. find() and bin_find() can match or miss addresses as a result. Example: my $cidr = Net::CIDR::Lite->new(); $cidr->add("::1\n/128"); $cidr->find("::1a"); # incorrectly returns true See also CVE-2026-45191.
CVSS Information
N/A
Vulnerability Type
CWE-1289
Vulnerability Title
Net-CIDR-Lite 安全漏洞
Vulnerability Description
Net-CIDR-Lite是Stig个人开发者的一个用于处理CIDR地址的Perl模块。 Net-CIDR-Lite 0.24之前版本存在安全漏洞,该漏洞源于未正确验证IP地址和CIDR掩码输入,可能导致IP ACL绕过。
CVSS Information
N/A
Vulnerability Type
N/A