Home / mailings [USN-8587-1] HTML-Parser vulnerability
Posted on 22 July 2026
Ubuntu Security==========================================================================Ubuntu Security Notice USN-8587-1
July 22, 2026
libhtml-parser-perl vulnerability
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 26.04 LTS
- Ubuntu 24.04 LTS
- Ubuntu 22.04 LTS
Summary:
HTML-Parser could be made to expose sensitive information.
Software Description:
- libhtml-parser-perl: collection of modules that parse HTML text documents
Details:
It was discovered that HTML-Parser incorrectly handled entity references
when the input string was identical to an entity value in the lookup table.
An attacker could possibly use this issue to obtain sensitive information.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 26.04 LTS
libhtml-parser-perl 3.83-1ubuntu0.1
Ubuntu 24.04 LTS
libhtml-parser-perl 3.81-1ubuntu0.1
Ubuntu 22.04 LTS
libhtml-parser-perl 3.76-1ubuntu0.1
In general, a standard system update will make all the necessary changes.
References:
https://ubuntu.com/security/notices/USN-8587-1
CVE-2026-8829
Package Information:
https://launchpad.net/ubuntu/+source/libhtml-parser-perl/3.83-1ubuntu0.1
https://launchpad.net/ubuntu/+source/libhtml-parser-perl/3.81-1ubuntu0.1
https://launchpad.net/ubuntu/+source/libhtml-parser-perl/3.76-1ubuntu0.1
--===============8337643223620632347==Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
