This update for perl-DBI fixes the following issues
* CVE-2026-9698: DBI versions before 1.648 for Perl saved errors in a limited-
sized buffer (bsc#1267957).
* CVE-2026-10879: SQL statements with more than 9 binders can cause an heap
overflow (bsc#1267849).
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Linux Enterprise Server 15 SP6 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-2749=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP6
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-2749=1
* openSUSE Leap 15.6
zypper in -t patch SUSE-2026-2749=1
* Basesystem Module 15-SP7
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-2749=1
* openSUSE Leap 15.6 (aarch64 i586 ppc64le s390x x86_64)
* perl-DBI-1.647.0-150600.12.11.1
* perl-DBI-debugsource-1.647.0-150600.12.11.1
* perl-DBI-debuginfo-1.647.0-150600.12.11.1
* SUSE Linux Enterprise Server for SAP Applications 15 SP6 (ppc64le x86_64)
* perl-DBI-1.647.0-150600.12.11.1
* perl-DBI-debugsource-1.647.0-150600.12.11.1
* perl-DBI-debuginfo-1.647.0-150600.12.11.1
* Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64)
* perl-DBI-1.647.0-150600.12.11.1
* perl-DBI-debugsource-1.647.0-150600.12.11.1
* perl-DBI-debuginfo-1.647.0-150600.12.11.1
* SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le s390x x86_64)
* perl-DBI-1.647.0-150600.12.11.1
* perl-DBI-debugsource-1.647.0-150600.12.11.1
* perl-DBI-debuginfo-1.647.0-150600.12.11.1
* bsc#1267849
* bsc#1267957
## References:
* https://www.suse.com/security/cve/CVE-2026-10879.html
* https://www.suse.com/security/cve/CVE-2026-9698.html
* https://bugzilla.suse.com/show_bug.cgi?id=1267849
* https://bugzilla.suse.com/show_bug.cgi?id=1267957
Get the latest Linux and open source security news straight to your inbox.