[Git][security-tracker-team/security-tracker][master] Ddd followup for libdbi-perl for three CVEs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Sep 24 18:17:42 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
8c3823a0 by Salvatore Bonaccorso at 2026-09-24T19:16:58+02:00
Ddd followup for libdbi-perl for three CVEs
Thanks: Guilhem Moulin
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -49004,11 +49004,13 @@ CVE-2026-73194 (DBI versions before 1.652 for Perl allow a heap out-of-bounds wr
- libdbi-perl 1.652-1 (bug #1144471)
NOTE: https://lists.security.metacpan.org/cve-announce/msg/42707363/
NOTE: Fixed by: https://github.com/perl5-dbi/dbi/commit/29b72ae7d2a8114a734a55840bf1c45b89207809 (1.652)
+ NOTE: Followup: https://github.com/perl5-dbi/dbi/commit/9ffafab2369d7214f88967645feb3beadb900712 (1.653)
CVE-2026-73193 (DBI versions before 1.652 for Perl allow a heap out-of-bounds write on ...)
{DSA-6473-1 DLA-4764-1}
- libdbi-perl 1.652-1 (bug #1144470)
NOTE: https://lists.security.metacpan.org/cve-announce/msg/42707360/
NOTE: Fixed by: https://github.com/perl5-dbi/dbi/commit/c751ae5a5a6f56c2f8284f37c1f4d43500352ef1 (1.652)
+ NOTE: Followup: https://github.com/perl5-dbi/dbi/commit/afba6751f2acbc1f55ad55aac9f0b58d4f511308 (1.653)
CVE-2026-15689 (Dancer2::Plugin::Auth::Extensible versions through 0.713 for Perl allo ...)
NOT-FOR-US: Dancer2::Plugin::Auth::Extensible Perl module
CVE-2026-74573 (In the Linux kernel, the following vulnerability has been resolved: i ...)
@@ -87805,6 +87807,7 @@ CVE-2026-15392 (DBD::File versions before 1.651 for Perl do not ensure the table
NOTE: https://lists.security.metacpan.org/cve-announce/msg/41813967/
NOTE: https://github.com/perl5-dbi/dbi/security/advisories/GHSA-mh3j-xwf4-jrqw
NOTE: Fixed by: https://github.com/perl5-dbi/dbi/commit/96d62dfe4528bf56fe13f413ed323d4252531728 (1.651)
+ NOTE: Followup: https://github.com/perl5-dbi/dbi/commit/7415786b8bf58b1498e9e4f3c8faac7787a057bb (1.653)
CVE-2026-60082 (DBI versions before 1.651 for Perl do not enforce statement handle con ...)
{DSA-6473-1 DLA-4764-1}
- libdbi-perl 1.651-1 (bug #1142072)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8c3823a0ce4b2a26dce139df16bf9064cfb5a319
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8c3823a0ce4b2a26dce139df16bf9064cfb5a319
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260924/6bc2a62c/attachment.htm>
More information about the debian-security-tracker-commits
mailing list