UbuntuUpdates.org

Package "libdbd-mysql-perl"

Name: libdbd-mysql-perl

Description:

Perl5 database interface to the MySQL database

Latest version: 4.033-1ubuntu0.1
Release: xenial (16.04)
Level: updates
Repository: universe
Homepage: http://dbi.perl.org/

Links


Download "libdbd-mysql-perl"


Other versions of "libdbd-mysql-perl" in Xenial

Repository Area Version
base universe 4.033-1build2
security universe 4.033-1ubuntu0.1

Changelog

Version: 4.033-1ubuntu0.1 2016-10-13 16:06:38 UTC

  libdbd-mysql-perl (4.033-1ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: denial of service and possible code execution via
    use after free
    - debian/patches/CVE-2015-8949.patch: properly handle free in dbdimp.c.
    - CVE-2015-8949
  * SECURITY UPDATE: unsafe sprintf w/variable length input
    - debian/patches/CVE-2016-1246.patch: don't use sprintf in dbdimp.c.
    - CVE-2016-1246

 -- Marc Deslauriers <email address hidden> Thu, 13 Oct 2016 09:22:05 -0400

CVE-2015-8949 Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call
CVE-2016-1246 Buffer overflow in the DBD::mysql module before 4.037 for Perl allows context-dependent attackers to cause a denial of service (crash) via vectors re



About   -   Send Feedback to @ubuntu_updates