Security Advisories (1)
CVE-2021-47154 (2024-03-18)

The Net::CIDR::Lite module before 0.22 for Perl does not properly consider extraneous zero characters at the beginning of an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

Changes for version 0.21 - 2007-03-28

  • Fix RT Tickets:
  • 14535: Fix spanner clean() docs (reported by carbon at pobox.com).
  • 25898: Undef dereference with empty object (patch by Adam Tomason).
  • 30777: Add short_list_range() method (patch by Josef Kutej).
  • 48308: clean() or list() before add() causes error (reported by David Cawley).
  • 50042: spanner add() did not accept non-object (patch by Tomo.M).
  • 52571: "::" not accepted as valid IPv6 address (reported by Tim Wilde).

Modules

Perl extension for merging IPv4 or IPv6 CIDR addresses

Provides