Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer without a length limit.
Attackers that can influence the error text in an application can trigger a buffer overflow.
No advisories yet.
Solution
Upgrade to DBI 1.648 or later.
Workaround
No workaround given by the vendor.
Tue, 09 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Perl
Perl dbi |
|
| CPEs | cpe:2.3:a:perl:dbi:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Perl
Perl dbi |
Tue, 09 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 09 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 09 Jun 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hmbrand
Hmbrand dbi |
|
| Vendors & Products |
Hmbrand
Hmbrand dbi |
Tue, 09 Jun 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer without a length limit. Attackers that can influence the error text in an application can trigger a buffer overflow. | |
| Title | DBI versions before 1.648 for Perl saved errors in a limited-sized buffer | |
| Weaknesses | CWE-787 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CPANSec
Published:
Updated: 2026-06-09T15:44:21.456Z
Reserved: 2026-05-27T12:06:43.461Z
Link: CVE-2026-9698
Updated: 2026-06-09T11:03:32.648Z
Status : Analyzed
Published: 2026-06-09T08:16:29.190
Modified: 2026-06-09T17:20:05.550
Link: CVE-2026-9698
No data.
OpenCVE Enrichment
Updated: 2026-06-09T17:45:10Z