CVE-2009-0663
NONE EPSS 89.8%
Published Apr 30, 200917y ago · Modified Jun 16, 20262w ago
Published Apr 30, 2009 17y ago
Last Modified Jun 16, 2026 2w ago
Description
Heap-based buffer overflow in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module 1.49 for Perl might allow context-dependent attackers to execute arbitrary code via unspecified input to an application that uses the getline and pg_getline functions to read database rows.
Threat Intelligence
EPSS Exploit Probability
89.8% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Weaknesses 1
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer Memory Safety
Affected Products 2
References 12
- lists.opensuse.org http://lists.opensuse.org/opensuse-security-announce/2009-07/msg00002.html
- secunia.com http://secunia.com/advisories/34909
- secunia.com http://secunia.com/advisories/35058
- secunia.com http://secunia.com/advisories/35685
- security.debian.org http://security.debian.org/pool/updates/main/libd/libdbd-pg-perl/libdbd-pg-perl_1.49-2+etch1.diff.gz
- debian.org http://www.debian.org/security/2009/dsa-1780
- redhat.com http://www.redhat.com/support/errata/RHSA-2009-0479.html
- redhat.com http://www.redhat.com/support/errata/RHSA-2009-1067.html
- securityfocus.com http://www.securityfocus.com/bid/34755
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/50467
- launchpad.net https://launchpad.net/bugs/cve/2009-0663
- oval.cisecurity.org https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9499
Remediation
- security.debian.org http://security.debian.org/pool/updates/main/libd/libdbd-pg-perl/libdbd-pg-perl_1.49-2+etch1.diff.gz