A database access API for perl
Backport fix for CVE-2026-88815: DBI::sql_type_cast used raw SvPVX/SvCUR to access SV internals, which could cause an invalid memory read when given numeric (IV/NV) values. The fix uses SvPV for proper stringification. A second commit fixes C89 compatibility by moving variable declarations to the top of the function. Added as DBI-1.641-Fix-CVE-2026-88815.patch. CVE: CVE-2026-88815 Upstream patches: - |
||
|---|---|---|
| .fmf | ||
| plans | ||
| .gitignore | ||
| .rpmlint | ||
| DBI-1.641-Fix-CVE-2026-9698.patch | ||
| DBI-1.641-Fix-CVE-2026-10879.patch | ||
| DBI-1.641-Fix-CVE-2026-73194.patch | ||
| DBI-1.641-Fix-CVE-2026-88815.patch | ||
| DBI-1.643-Fix-CVE-2026-14380.patch | ||
| DBI-1.643-Fix-CVE-2026-14739.patch | ||
| gating.yaml | ||
| perl-DBI.spec | ||
| sources | ||