libdbi-perl is vulnerable to denial of service. An untrusted pointer dereference allows a local attacker who is able to manipulate calls to dbd_db_login6_sv()
, cause a memory corruption and crash the application.
CPE | Name | Operator | Version |
---|---|---|---|
libdbi-perl:stretch | eq | 1.636-1+b1 |
lists.opensuse.org/opensuse-security-announce/2020-09/msg00067.html
lists.opensuse.org/opensuse-security-announce/2020-09/msg00074.html
bugzilla.redhat.com/show_bug.cgi?id=1877402
lists.debian.org/debian-lts-announce/2020/09/msg00026.html
lists.fedoraproject.org/archives/list/[email protected]/message/JXLKODJ7B57GITDEZZXNSHPK4VBYXYHR/
metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.643
security-tracker.debian.org/tracker/CVE-2020-14392
usn.ubuntu.com/4503-1/