CVE-2026-3257

UnQLite versions through 0.06 for Perl uses a potentially insecure version of the UnQLite library. UnQLite for Perl embeds the UnQLite library. Version 0.06 and earlier of the Perl module uses a version of the library from 2014 that may be vulnerable to a heap-based overflow.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tokuhirom:unqlite:*:*:*:*:*:perl:*:*

History

09 Mar 2026, 14:53

Type Values Removed Values Added
References () https://metacpan.org/release/TOKUHIROM/UnQLite-0.07/source/Changes - () https://metacpan.org/release/TOKUHIROM/UnQLite-0.07/source/Changes - Release Notes
References () https://unqlite.symisc.net/ - () https://unqlite.symisc.net/ - Product
References () https://www.cve.org/CVERecord?id=CVE-2025-3791 - () https://www.cve.org/CVERecord?id=CVE-2025-3791 - Third Party Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:tokuhirom:unqlite:*:*:*:*:*:perl:*:*
Summary
  • (es) Las versiones de UnQLite hasta la 0.06 para Perl utilizan una versión potencialmente insegura de la biblioteca UnQLite. UnQLite para Perl incrusta la biblioteca UnQLite. La versión 0.06 y anteriores del módulo Perl utilizan una versión de la biblioteca de 2014 que puede ser vulnerable a un desbordamiento basado en el montón.
First Time Tokuhirom unqlite
Tokuhirom

05 Mar 2026, 19:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

05 Mar 2026, 02:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-05 02:16

Updated : 2026-03-09 14:53


NVD link : CVE-2026-3257

Mitre link : CVE-2026-3257

CVE.ORG link : CVE-2026-3257


JSON object : View

Products Affected

tokuhirom

  • unqlite