Untrusted Pointer Dereference - CVE-2020-14392
Published: September 16, 2020 / Updated: September 21, 2020
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to untrusted pointer dereference error. A remote attacker can trick the victim to open a specially crafted file, trigger pointer dereference and execute arbitrary code on the target system.
Successful exploitation of the vulnerability may allow an attacker to compromise the affected system.
Affected software
Ubuntu
Opensuse
Fedora
perl-dbi (Alpine package)
libdbi-perl (Ubuntu package)
perl-DBI
How to mitigate CVE-2020-14392
perl-DBI - update to 1.643-3.fc31