{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-78183","assignerOrgId":"9b29abf9-4ab0-4765-b253-1875cd9b441e","state":"PUBLISHED","assignerShortName":"CPANSec","dateReserved":"2026-08-23T16:38:31.813Z","datePublished":"2026-08-23T19:53:18.185Z","dateUpdated":"2026-08-23T23:04:55.125Z"},"containers":{"cna":{"affected":[{"collectionURL":"https://cpan.org/modules","defaultStatus":"unaffected","modules":["DBD::Pg"],"packageName":"DBD-Pg","packageURL":"pkg:cpan/DBD-Pg","programFiles":["quote.c"],"programRoutines":[{"name":"quote_float"}],"repo":"https://github.com/bucardo/dbdpg","versions":[{"status":"affected","version":"3.21.0","versionType":"custom"}]}],"descriptions":[{"lang":"en","value":"DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float.\n\nquote_float() allocates the length of the string + 1, which is the size of the bare numeric symbol plus NULL.  But for special literals NaN, Inf, +Inf, -Inf, Infinity, +Infinity, -Infinity it emits the literal surrounded by quotes plus NULL, which is length + 3 bytes. Every recognised literal (case-insensitive) overflows by 2 bytes, a single quote and a NULL.\n\nThis can be reached by the $dbh->quote method, for example\n\n    $dbh->quote( \"Infinity\", DBI::SQL_NUMERIC ).\n\nThis regression was introduced in 3.21.0 by the quote.c rewrite."}],"problemTypes":[{"descriptions":[{"cweId":"CWE-787","description":"CWE-787 Out-of-bounds Write","lang":"en","type":"CWE"}]}],"providerMetadata":{"orgId":"9b29abf9-4ab0-4765-b253-1875cd9b441e","shortName":"CPANSec","dateUpdated":"2026-08-23T19:53:18.185Z"},"references":[{"tags":["vendor-advisory"],"url":"https://github.com/bucardo/dbdpg/security/advisories/GHSA-785p-fw3v-r822"},{"tags":["release-notes"],"url":"https://metacpan.org/release/TURNSTEP/DBD-Pg-3.21.1/source/Changes"},{"tags":["patch"],"url":"https://github.com/bucardo/dbdpg/commit/6d6f47ed2403cda55c82b1bad56e388ba7390065.patch"},{"tags":["related"],"url":"https://github.com/bucardo/dbdpg/commit/adacf1de872326a465e13f9e4281a674ebcd227e"}],"solutions":[{"lang":"en","value":"Upgrade to version 3.21.1 or later."}],"source":{"discovery":"UNKNOWN"},"title":"DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float","x_generator":{"engine":"cpansec-cna-tool 0.1"}},"adp":[{"title":"CVE Program Container","references":[{"url":"http://www.openwall.com/lists/oss-security/2026/08/23/5"}],"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2026-08-23T23:04:55.125Z"}}]}}