Описание
ELSA-2026-49612: perl-DBI security update (IMPORTANT)
[1.643-9.3]
- Fix unsafe string eval in DBI::Profile (CVE-2026-14380)
- Resolves: RHEL-211149
[1.643-9.2]
- Set a hard limit of 99999 on '?' placeholders (CVE-2026-14739)
- Resolves: RHEL-193306
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
perl-DBI
1.643-9.el9_8.3
Oracle Linux x86_64
perl-DBI
1.643-9.el9_8.3
Связанные CVE
Связанные уязвимости
DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-10879 did not allocate enough memory to handle approximately 1.2-million placeholders. DBI version 1.650 sets a hard limit of 99,999 placeholders.
DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-10879 did not allocate enough memory to handle approximately 1.2-million placeholders. DBI version 1.650 sets a hard limit of 99,999 placeholders.