Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-85922.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-85922
Upstream
Published
2026-04-29T15:16:09Z
Modified
2026-08-30T05:24:52Z
Summary
CVE-2026-7111 affecting package perl-Text-CSV_XS 1.60-1
Details

Text::CSV_XS versions before 1.62 for Perl have a use-after-free when registered callbacks extend the Perl argument stack, which may enable type confusion or memory corruption.

The Parse, print, getline, and getlineall methods invoke registered callbacks (for example afterparse, beforeprint, or onerror) and cache the Perl argument stack pointer across the call. If a callback extends the argument stack enough to trigger a reallocation, the return value is written through the stale pointer into the freed buffer, and the caller reads the original $self argument as the return value instead.

Calling code that expects parsed data from getlineall receives the Text::CSVXS object in its place, leading to logic errors or crashes. Text::CSV_XS objects used without any registered callbacks are not affected.

References

Affected packages

Azure Linux:3 / perl-Text-CSV_XS

Package

Name
perl-Text-CSV_XS
Purl
pkg:rpm/azure-linux/perl-Text-CSV_XS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
1.60-1

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-85922.json"