Linuxsecurity Critical Vulnerabilities in perl-DBI Affecting SUSE Systems
Article Content
- •Multiple critical vulnerabilities in perl-DBI require immediate patching.
- •CVE-2026-14380 allows arbitrary code execution, posing a high risk.
- •Affected systems include openSUSE and SUSE Linux Enterprise Server.
A significant security update for perl-DBI has been released, addressing multiple vulnerabilities including CVE-2026-14380, which allows arbitrary Perl code execution. Other issues include CVE-2026-14740, leading to potential process crashes, and CVE-2026-15392, permitting arbitrary file reads and writes. The vulnerabilities affect various SUSE Linux systems, including openSUSE and SUSE Linux Enterprise Server. The vulnerabilities were published between July 7 and July 14, 2026, with a patch released on July 30, 2026. System administrators are urged to apply the updates immediately to mitigate risks of exploitation. The CVSS scores for these vulnerabilities range from 5.3 to 9.8, indicating varying levels of severity. The advisory emphasizes the importance of auditing Linux privileges to prevent compromise and escalation.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Following this threat?
Track CVE-2026-14380 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Oracle Issues September 2026 Security Update Addressing 673 Vulnerabilities On September 15, 2026, Oracle released a Critical Security Patch Update (CSPU) addressing 673 vulnerabilities across 17 product families, including Oracle E-Business Suite and Fusion Middleware. Among these, 159 patches were for E-Business Suite, and 153 for Fusion Middleware, with 19 and 78 vulnerabilities…
Critical Vulnerabilities in Oracle Linux 10 Affecting Admin Control Oracle has issued advisories for two critical vulnerabilities in Linux 10 affecting PostgreSQL and perl-DBI. CVE-2026-73515 allows attackers to gain admin control through chained flaws in PostGIS, while CVE-2026-19546 addresses an incomplete fix for CVE-2026-14380 in DBI::Profile. Both vulnerabilities were published…