CVE-2026-14740: DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment
DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 1.650-1 - Upgrade
Upgrade
DBI (Perl)to a version that resolves this vulnerability.Fixed in 1.650
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14740?
CVE-2026-14740 has a severity rating of 9, indicating a high risk associated with the vulnerability.
How do I fix CVE-2026-14740?
To fix CVE-2026-14740, update DBI to version 1.650 or later, as this version addresses the out-of-bounds read issue.
What impact does CVE-2026-14740 have on DBI?
CVE-2026-14740 can lead to potential buffer overflows or crashes due to an out-of-bounds read when processing SQL comments.
Who is affected by CVE-2026-14740?
Users of DBI versions prior to 1.650 for Perl are affected by CVE-2026-14740.
When was CVE-2026-14740 published?
CVE-2026-14740 was published on July 7, 2026.