Security Advisories (1)
CVE-2021-24032 (2021-03-04)

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

Changes for version 4.022

  • Better logic to make it possible to upgrade with passing tests when using Sereal::Decoder 4.019 on threaded debugging perls. IF YOU USE THREADED PERLS YOU ARE STRONGLY ADVISED TO UPDATE TO THIS VERSION OR LATER.

Modules

Fast, compact, powerful binary deserialization
Getting the most out of the Perl-Sereal implementation

Provides

in lib/Sereal/Decoder/Constants.pm