Candidate: CVE-2012-1151 PublicDate: 2012-09-09 21:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1151 Description: Multiple format string vulnerabilities in dbdimp.c in DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.19.0 for Perl allow remote PostgreSQL database servers to cause a denial of service (process crash) via format string specifiers in (1) a crafted database warning to the pg_warn function or (2) a crafted DBD statement to the dbd_st_prepare function. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=661536 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_libdbd-pg-perl: upstream_libdbd-pg-perl: released (2.19.0-1) hardy_libdbd-pg-perl: ignored (reached end-of-life) lucid_libdbd-pg-perl: ignored (reached end-of-life) maverick_libdbd-pg-perl: released (2.17.1-2+squeeze1build0.10.10.1) natty_libdbd-pg-perl: ignored (reached end-of-life) oneiric_libdbd-pg-perl: ignored (reached end-of-life) precise_libdbd-pg-perl: released (2.19.0-1) quantal_libdbd-pg-perl: released (2.19.0-1) raring_libdbd-pg-perl: released (2.19.0-1) saucy_libdbd-pg-perl: released (2.19.0-1) devel_libdbd-pg-perl: released (2.19.0-1)