THREAT OPS › Threat News › [NVD] CVE-2026-9698 (CRITICAL 9.8) — DBI versions before 1.648 for Perl saved errors in a limited-sized buffer.
Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer without a length limit.
Attackers that can influence the error text in an applicati
[NVD] CVE-2026-9698 (CRITICAL 9.8) — DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer without a length limit. Attackers that can influence the error text in an applicati
CVE-2026-9698 CVSS: 9.8 CRITICAL Published: 2026-06-09T08:16:29.190
DBI versions before 1.648 for Perl saved errors in a limited-sized buffer.
Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer without a length limit.
Attackers that can influence the error text in an application can trigger a buffer overflow.
Indicators of compromise
- CVE-2026-9698cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-9698