gpp_maybe
Security update for perl-dbi
SUSE-SLES-16.0-1322
This update for perl-DBI fixes the following issues: - CVE-2026-15392: failure to validate symbolic links during table path resolution could allow unauthorized file reads and writes outside the configured data director (bsc#1271629). - CVE-2026-15043: `DBI:SQL:Nano` has incorrect predicate evaluation, which allows for bypass of file-backed filters (bsc#1271399). - CVE-2026-60081: `DBI:ProfileData` does not limit the path index in profile parser, which enables small-file memory-amplification DoS (bsc#1271458). - CVE-2026-60082: out-of-bounds access in `_set_fbav` when a statement handle has zero fields but a non-empty row, which allows for a process crash (bsc#1271459).
-
Release DateJul 22 2026
-
ReferencesBugzilla: 1271399, 1271458, 1271459, 1271629
CVEs: CVE-2026-15043, CVE-2026-15392, CVE-2026-60081, CVE-2026-60082 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server 16.0 aarch64
-
Packages
SUSE Linux Enterprise Server 16.0 ppc64le
-
Packages
SUSE Linux Enterprise Server 16.0 s390x
-
Packages
SUSE Linux Enterprise Server 16.0 x86_64
-
Packages
SUSE Linux Enterprise Server for SAP applications 16.0 ppc64le
-
Packages
SUSE Linux Enterprise Server for SAP applications 16.0 x86_64
-
Packages