CVE-2009-0663
libdbd-pg-perl - potential code execution
EPSS 4.3%
Description
Heap-based buffer overflow in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module 1.49 for Perl might allow context-dependent attackers to execute arbitrary code via unspecified input to an application that uses the getline and pg_getline functions to read database rows.
How to fix CVE-2009-0663
To remediate CVE-2009-0663, upgrade the affected package to a fixed version below.
- Debian/libdbd-pg-perl—upgrade to 2.1.3-1 or later
- Debian/libdbd-pg-perl—upgrade to 1.49-2+etch1 or later
Is CVE-2009-0663 being exploited?
Low — EPSS is 4.3%, meaning exploitation activity has not been observed at scale.
Affected packages (2)
- from 0, < 2.1.3-1
- from 0, < 1.49-2+etch1