Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2017:0025-1

Опубликовано: 04 янв. 2017
Источник: suse-cvrf

Описание

Security update for perl-DBD-mysql

This update for perl-DBD-mysql fixes the following issues:

  • Add patch to fix CVE-2016-1251 (bsc#1012546) use-after-free for repeated fetchrow_arrayref calls when mysql_server_prepare=1

Список пакетов

SUSE Linux Enterprise Server 11 SP4
perl-DBD-mysql-4.008-6.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
perl-DBD-mysql-4.008-6.1
SUSE Linux Enterprise Software Development Kit 11 SP4
perl-DBD-mysql-4.008-6.1

Описание

There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQL driver for Perl) 3.x and 4.x before 4.041 when used with mysql_server_prepare=1.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:perl-DBD-mysql-4.008-6.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4:perl-DBD-mysql-4.008-6.1
SUSE Linux Enterprise Software Development Kit 11 SP4:perl-DBD-mysql-4.008-6.1

Ссылки