Critical Vulnerabilities in perl-DBI Affecting SUSE Systems

Critical Vulnerabilities in perl-DBI Affecting SUSE Systems

First seen 30 Jul 2026, 18:51 UTC Linuxsecurity 97% similarity 74.0

Article Content

Browse articles
ThreatCluster

A significant security update for perl-DBI has been released, addressing multiple vulnerabilities including CVE-2026-14380, which allows arbitrary Perl code execution. Other issues include CVE-2026-14740, leading to potential process crashes, and CVE-2026-15392, permitting arbitrary file reads and writes. The vulnerabilities affect various SUSE Linux systems, including openSUSE and SUSE Linux Enterprise Server. The vulnerabilities were published between July 7 and July 14, 2026, with a patch released on July 30, 2026. System administrators are urged to apply the updates immediately to mitigate risks of exploitation. The CVSS scores for these vulnerabilities range from 5.3 to 9.8, indicating varying levels of severity. The advisory emphasizes the importance of auditing Linux privileges to prevent compromise and escalation.

Key Points: • Multiple critical vulnerabilities in perl-DBI require immediate patching. • CVE-2026-14380 allows arbitrary code execution, posing a high risk. • Affected systems include openSUSE and SUSE Linux Enterprise Server.

ThreatCluster AI How this analysis works

Timeline

2026-07-07
CVE-2026-14380 published
Arbitrary Perl code execution vulnerability disclosed, affecting perl-DBI.
Linuxsecurity
2026-07-07
CVE-2026-14740 published
One-byte out-of-bounds read vulnerability disclosed, leading to potential crashes.
Linuxsecurity
2026-07-14
CVE-2026-15043 published
Incorrect predicate evaluation vulnerability disclosed, allowing filter bypass.
Linuxsecurity
2026-07-14
CVE-2026-60081 published
Memory-amplification DoS vulnerability disclosed in perl-DBI.
Linuxsecurity
2026-07-14
CVE-2026-15392 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-14
CVE-2026-60082 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-30
SUSE releases security update 2026-3415
Critical vulnerabilities in perl-DBI patched; admins urged to update systems immediately.
Linuxsecurity

Community

Browse all →