<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 05:53:26 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-358994</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-358994</link>
      <description>EUVD-2026-358994</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-358994</guid>
    </item>
    <item>
      <title>fkie_cve-2026-78183</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-78183</link>
      <description>&lt;p&gt;DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float.&lt;/p&gt;
&lt;p&gt;quote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL.&lt;/p&gt;
&lt;p&gt;This can be reached by the $dbh-&amp;gt;quote method, for example&lt;/p&gt;
&lt;p&gt;$dbh-&amp;gt;quote( &amp;#34;Infinity&amp;#34;, DBI::SQL_NUMERIC ).&lt;/p&gt;
&lt;p&gt;This regression was introduced in 3.21.0 by the quote.c rewrite.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float.&lt;/p&gt;
&lt;p&gt;quote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL.&lt;/p&gt;
&lt;p&gt;This can be reached by the $dbh-&amp;gt;quote method, for example&lt;/p&gt;
&lt;p&gt;$dbh-&amp;gt;quote( &amp;#34;Infinity&amp;#34;, DBI::SQL_NUMERIC ).&lt;/p&gt;
&lt;p&gt;This regression was introduced in 3.21.0 by the quote.c rewrite.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-78183</guid>
    </item>
    <item>
      <title>GHSA-6mq2-jf7v-pvjx</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6mq2-jf7v-pvjx</link>
      <description>&lt;p&gt;DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float.&lt;/p&gt;
&lt;p&gt;quote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL.&lt;/p&gt;
&lt;p&gt;This can be reached by the $dbh-&amp;gt;quote method, for example&lt;/p&gt;
&lt;p&gt;$dbh-&amp;gt;quote( &amp;#34;Infinity&amp;#34;, DBI::SQL_NUMERIC ).&lt;/p&gt;
&lt;p&gt;This regression was introduced in 3.21.0 by the quote.c rewrite.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float.&lt;/p&gt;
&lt;p&gt;quote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL.&lt;/p&gt;
&lt;p&gt;This can be reached by the $dbh-&amp;gt;quote method, for example&lt;/p&gt;
&lt;p&gt;$dbh-&amp;gt;quote( &amp;#34;Infinity&amp;#34;, DBI::SQL_NUMERIC ).&lt;/p&gt;
&lt;p&gt;This regression was introduced in 3.21.0 by the quote.c rewrite.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6mq2-jf7v-pvjx</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11722-1 — perl-DBD-Pg-3.21.2-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11722-1</link>
      <description>&lt;p&gt;perl-DBD-Pg-3.21.2-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;perl-DBD-Pg-3.21.2-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11722-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-78183</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-78183</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libdbd-pg-perl, Ubuntu:18.04:LTS: libdbd-pg-perl, Ubuntu:20.04:LTS: libdbd-pg-perl, Ubuntu:22.04:LTS: libdbd-pg-perl, Ubuntu:24.04:LTS: libdbd-pg-perl, Ubuntu:26.04:LTS: libdbd-pg-perl&lt;/p&gt;
&lt;p&gt;DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float. quote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL. This can be reached by the $dbh-&amp;gt;quote method, for example     $dbh-&amp;gt;quote( &amp;#34;Infinity&amp;#34;, DBI::SQL_NUMERIC ). This regression was introduced in 3.21.0 by the quote.c rewrite.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libdbd-pg-perl, Ubuntu:18.04:LTS: libdbd-pg-perl, Ubuntu:20.04:LTS: libdbd-pg-perl, Ubuntu:22.04:LTS: libdbd-pg-perl, Ubuntu:24.04:LTS: libdbd-pg-perl, Ubuntu:26.04:LTS: libdbd-pg-perl&lt;/p&gt;
&lt;p&gt;DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float. quote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL. This can be reached by the $dbh-&amp;gt;quote method, for example     $dbh-&amp;gt;quote( &amp;#34;Infinity&amp;#34;, DBI::SQL_NUMERIC ). This regression was introduced in 3.21.0 by the quote.c rewrite.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-78183</guid>
    </item>
  </channel>
</rss>
