Gnoppix Security 23/25 and 25 users must update libconfig-inifiles-perl immediately.
Critical remote code execution flaw discovered.
Action required: Upgrade to package version 3.03-2+deb12u1 or later.
The update addresses a vulnerability where the Perl module for INI file parsing could be exploited to execute arbitrary code.
Attack vector is unverfied INI file content.
Gnoppix Security GSA-6354-1 confirms the fix is now available for both Stable (Gnoppix 23/25) and upcoming (Gnoppix 25) releases. - Please update your systems.