Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15392

Опубликовано: 14 июл. 2026
Источник: redhat
CVSS3: 6.3

Описание

DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location. The complete_table_name method builds the absolute table file path without checking whether the file is a symbolic link. A link inside the data directory can point to a table file at any path outside of the configured f_dir and f_dir_search directories. Callers of file-based drivers can read or write files outside of the data directory.

A flaw was found in DBD::File. The complete_table_name method, responsible for building absolute table file paths, does not verify if the file is a symbolic link. This oversight allows a local attacker to create a symbolic link within the data directory that points to an arbitrary file outside of the intended data storage. Consequently, file-based drivers can be tricked into reading from or writing to unauthorized files, potentially leading to information disclosure or data corruption.

Отчет

This Moderate flaw in DBD::File allows a local attacker to achieve arbitrary file read and write access. By creating a symbolic link within the data directory, an attacker can trick file-based drivers into accessing files outside of the intended directories, leading to potential information disclosure or data corruption. This issue is only exploitable by local attackers with write access to the directory used by an application using DBD::File perl module to write or read database data files.

Меры по смягчению последствий

To mitigate this issue, ensure that directories used by applications using DBD::File for data storage have restricted write permissions, preventing untrusted local users from creating symbolic links. This operational control limits an attacker's ability to exploit the vulnerability by preventing the creation of malicious symlinks.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10perl-DBIFix deferred
Red Hat Enterprise Linux 6perl-DBIOut of support scope
Red Hat Enterprise Linux 7perl-DBIFix deferred
Red Hat Enterprise Linux 8perl-DBIFix deferred
Red Hat Enterprise Linux 8perl-DBI:1.641/perl-DBIFix deferred
Red Hat Enterprise Linux 9perl-DBIFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-59
https://bugzilla.redhat.com/show_bug.cgi?id=2500029perl-DBI: DBD::File: Arbitrary file read/write via symlink vulnerability

6.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.7
ubuntu
28 дней назад

DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location. The complete_table_name method builds the absolute table file path without checking whether the file is a symbolic link. A link inside the data directory can point to a table file at any path outside of the configured f_dir and f_dir_search directories. Callers of file-based drivers can read or write files outside of the data directory.

CVSS3: 7.7
nvd
28 дней назад

DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location. The complete_table_name method builds the absolute table file path without checking whether the file is a symbolic link. A link inside the data directory can point to a table file at any path outside of the configured f_dir and f_dir_search directories. Callers of file-based drivers can read or write files outside of the data directory.

CVSS3: 7.7
msrc
25 дней назад

DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location

CVSS3: 7.7
debian
28 дней назад

DBD::File versions before 1.651 for Perl do not ensure the table file ...

suse-cvrf
20 дней назад

Security update for perl-DBI

6.3 Medium

CVSS3