| Package | libdbd-csv-perl |
|---|---|
| Version | 0.4900-1+deb9u1 (stretch), 0.5300-1+deb10u2 (buster) |
The security fix for CVE-2026-15392 (symlink escape in DBD::File),
published for libdbi-perl as ELA-1816-1, broke the test suite of the
libdbd-csv-perl package.
The DBD::CSV Perl module itself remains unchanged by this regression
update.
For Debian 10 buster, these problems have been fixed in version 0.5300-1+deb10u2.
For Debian 9 stretch, these problems have been fixed in version 0.4900-1+deb9u1.
We recommend that you upgrade your libdbd-csv-perl packages.
Further information about Extended LTS security advisories can be found in the dedicated section of our website.