Candidate: CVE-2009-1341 PublicDate: 2009-04-30 20:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1341 http://cpansearch.perl.org/src/TURNSTEP/DBD-Pg-2.13.1/Changes http://www.debian.org/security/2009/dsa-1780 Description: Memory leak in the dequote_bytea function in quote.c in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.0.0 for Perl allows context-dependent attackers to cause a denial of service (memory consumption) by fetching data with BYTEA columns. Ubuntu-Description: Notes: Bugs: http://rt.cpan.org/Public/Bug/Display.html?id=21392 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_libdbd-pg-perl: vendor: https://rhn.redhat.com/errata/RHSA-2009-0479.html upstream_libdbd-pg-perl: released (2.13.1) dapper_libdbd-pg-perl: ignored (reached end-of-life) hardy_libdbd-pg-perl: ignored (reached end-of-life) intrepid_libdbd-pg-perl: needs-triage (reached end-of-life) jaunty_libdbd-pg-perl: ignored (reached end-of-life) karmic_libdbd-pg-perl: ignored (reached end-of-life) lucid_libdbd-pg-perl: not-affected (2.13.1-1) maverick_libdbd-pg-perl: not-affected (2.13.1-1) natty_libdbd-pg-perl: not-affected (2.13.1-1) oneiric_libdbd-pg-perl: not-affected (2.13.1-1) devel_libdbd-pg-perl: not-affected (2.13.1-1)