CVE-2015-8949: Dbd-MySQL Project Dbd-MySQL
Critical severity, CVSS 9.8. EPSS: 4.5% chance of exploitation in the next 30 days.
Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call to mysql_errno after a failure of my_login.
Affected products
- Dbd-MySQL Project Dbd-MySQL: version 4.033 only
- Debian Debian Linux: version 8.0 only
Published 2016-08-19. Last modified 2026-06-17.