CVE-2026-3381Disclosure(pmqs / compress\)

LOWCVSS 9.8 · CRITICAL

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch pmqs compress\ systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes a copy of the zlib library. Compress::Raw::Zlib version 2.220 includes zlib 1.3.2, which addresses findings fron the 7ASecurity audit of zlib. The includes fixs for CVE-2026-27171.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1284

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • compress\

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-09-15)
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
compress\

1 version affected across 1 product

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-03-08: 1Mentions · 2026-03-09: 1Mentions · 2026-03-14: 1Mentions · 2026-09-15: 2Patch / Workaround · 2026-03-14: 1Technical Details · 2026-03-08: 1Technical Details · 2026-03-09: 1Technical Details · 2026-03-14: 1Technical Details · 2026-09-15: 203-0803-0903-1409-15
Signal classification4 categories
Disclosure
240.0%
General
120.0%
Patch
120.0%
False Positive
120.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-081
Disclosure1
2026-03-091
General1
2026-03-141
Patch1
2026-09-152
Disclosure1False Positive1
Full discourse5 posts
  • Open Source Security mailing list@oss_security
    General

    Perl CPAN CVE-2025-40931: Apache::Session::Generate::MD5 through 1.94 create insecure session id CVE-2026-3257: UnQLite through 0.06 uses potentially insecure version of the UnQLite library CVE-2026-3381: Compress::Raw::Zlib through 2.219 use potentially insecure versions of zlib

    Post summary

    The post lists three Perl CPAN module CVEs, noting their insecure behaviours, but provides no PoC, exploit, active exploitation, or patch information.

    00020333
    4.4K followersView on X
  • CVE Brief@DailyCVEBrief
    False Positive

    LOOK BACK: CVE-2026-3381 shows as 9.8 CRITICAL. The CNA that assigned it supplied no score at all. A Perl module bundles its own copy of zlib, and zlib had a medium-severity infinite loop in a CRC helper. Six months on: no exploitation, not in KEV, EPSS 0.55%. https://t.co/BKaP81yA08

    Post summary

    The post argues that CVE-2026-3381 appears overly severe or unsupported, noting a medium-severity zlib infinite-loop issue, absence of exploitation, no KEV listing, and no PoC, exploit tooling, or patch information in the text.

    10000110
    31 followersView on X
  • CVE Brief@DailyCVEBrief
    Disclosure

    The Look Back: how one audit finding became three CVE IDs, why Debian was never affected, and who actually put the 9.8 there: https://cvebrief.com/cve/cve-2026-3381/ https://t.co/MuXtqqo2Ks

    Post summary

    The post is a retrospective about how an audit finding resulted in multiple CVEs, including notes about Debian not being affected and a 9.8 severity reference. It provides limited technical context but does not mention PoC, exploitation, or explicit remediation.

    0000049
    31 followersView on X
  • PurpleOps@PurpleOps_io
    Patch

    🔍 𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐕𝐄 𝐛𝐫𝐞𝐚𝐤𝐝𝐨𝐰𝐧 𝐚𝐯𝐚𝐢𝐥𝐚𝐛𝐥𝐞 𝐧𝐨𝐰! Unlock the essential insights behind CVE-2026-3381, why patching now matters, and how to fortify your Windows SMB defenses against zero-click RCE. 📖 Check the detailed report → https://www.purple-ops.io/cybersecurity-threat-intelligence-blog/cve-2026-3381-smb-rce-windows/ Your insights matter — drop a comment!

    Post summary

    The post alerts to CVE‑2026‑3381, a zero‑click RCE flaw in Windows SMB, urges immediate patching, and links to a detailed technical report.

    0000053
    88 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3381 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes a copy of the zlib library. Compress::Raw::… https://www.cve.org/CVERecord?id=CVE-2026-3381

    Post summary

    The tweet announces the discovery of CVE‑2026‑3381, noting that Compress::Raw::Zlib versions up to 2.219 include an insecure zlib library copy, but offers no PoC, exploit, or patch information.

    00000245
    56.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppmqscompress\\--

Explore more