CVE-2013-7491
published 2020-09-11CVE-2013-7491: An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory…
PriorityP427medium5.3CVSS 3.1
AVNACLPRNUINSUCNINAL
EPSS
2.66%
84.0th percentile
An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libdbi-perl | < libdbi-perl 1.628-1 (bookworm) | libdbi-perl 1.628-1 (bookworm) |
| perl | dbi | < 1.628 | 1.628 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.3MEDIUM
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
perl-dbi: Stack corruption on callbacks
vendor_redhat·2013-06-24·CVSS 5.3
CVE-2013-7491 [MEDIUM] CWE-822 perl-dbi: Stack corruption on callbacks
perl-dbi: Stack corruption on callbacks
An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated.
Statement: perl-DBI as shipped in Red Hat Enterprise Linux 8, rhscl-3 rh-perl526-perl-DBI and rhscl-3 rh-perl530-perl-DBI are notaffected by this flaw as the vulnerable code has already been patched in versions of perl-DBI shipped in these products.
Package: perl-DBI (Red Hat Enterprise Linux 5) - Out of support scope
Package: perl-DBI (Red Hat Enterprise Linux 6) - Out of support scope
Package: perl-DBI (Red Hat Enterprise Linux 7) - Fix deferred
Package: perl-DBI (Red Hat Enterprise Linux 8) - Not affected
Package: rh-perl526-perl-DBI (Red Hat Softwa
Debian
CVE-2013-7491: libdbi-perl - An issue was discovered in the DBI module before 1.628 for Perl. Stack corruptio...
vendor_debian·2013·CVSS 5.3
CVE-2013-7491 [MEDIUM] CVE-2013-7491: libdbi-perl - An issue was discovered in the DBI module before 1.628 for Perl. Stack corruptio...
An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated.
Scope: local
bookworm: resolved (fixed in 1.628-1)
bullseye: resolved (fixed in 1.628-1)
forky: resolved (fixed in 1.628-1)
sid: resolved (fixed in 1.628-1)
trixie: resolved (fixed in 1.628-1)
GHSA
GHSA-grmf-5xw5-9cmx: An issue was discovered in the DBI module before 1
ghsa_unreviewed·2022-05-05
CVE-2013-7491 [MEDIUM] GHSA-grmf-5xw5-9cmx: An issue was discovered in the DBI module before 1
An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated.
OSV
CVE-2013-7491: An issue was discovered in the DBI module before 1
osv·2020-09-11·CVSS 5.3
CVE-2013-7491 [MEDIUM] CVE-2013-7491: An issue was discovered in the DBI module before 1
An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated.
No detection rules found.
No public exploits indexed.
https://github.com/perl5-dbi/dbi/commit/401f1221311c71f760e21c98772f0f7e3cbead1dhttps://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.628-22nd-July-2013https://rt.cpan.org/Public/Bug/Display.html?id=85562https://github.com/perl5-dbi/dbi/commit/401f1221311c71f760e21c98772f0f7e3cbead1dhttps://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.628-22nd-July-2013https://rt.cpan.org/Public/Bug/Display.html?id=85562
2020-09-11
Published