CVE-2012-1151

Publication date 9 September 2012

Last updated 24 July 2024


Ubuntu priority

Multiple format string vulnerabilities in dbdimp.c in DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.19.0 for Perl allow remote PostgreSQL database servers to cause a denial of service (process crash) via format string specifiers in (1) a crafted database warning to the pg_warn function or (2) a crafted DBD statement to the dbd_st_prepare function.

Status

Package Ubuntu Release Status
libdbd-pg-perl 13.10 saucy
Fixed 2.19.0-1
13.04 raring
Fixed 2.19.0-1
12.10 quantal
Fixed 2.19.0-1
12.04 LTS precise
Fixed 2.19.0-1
11.10 oneiric Ignored end of life
11.04 natty Ignored end of life
10.10 maverick
Fixed 2.17.1-2+squeeze1build0.10.10.1
10.04 LTS lucid Ignored end of life
8.04 LTS hardy Ignored end of life