<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns="http://www.icasi.org/CVRF/schema/cvrf/1.1" xmlns:cvrf="http://www.icasi.org/CVRF/schema/cvrf/1.1">
	<DocumentTitle xml:lang="en">An update for perl-DBI is now available for openEuler-22.03-LTS-SP4,openEuler-24.03-LTS-SP1,openEuler-24.03-LTS-SP3,openEuler-24.03-LTS-SP4,openEuler-20.03-LTS-SP4</DocumentTitle>
	<DocumentType>Security Advisory</DocumentType>
	<DocumentPublisher Type="Vendor">
		<ContactDetails>openeuler-security@openeuler.org</ContactDetails>
		<IssuingAuthority>openEuler security committee</IssuingAuthority>
	</DocumentPublisher>
	<DocumentTracking>
		<Identification>
			<ID>openEuler-SA-2026-3183</ID>
		</Identification>
		<Status>Final</Status>
		<Version>1.0</Version>
		<RevisionHistory>
			<Revision>
				<Number>1.0</Number>
				<Date>2026-07-24</Date>
				<Description>Initial</Description>
			</Revision>
		</RevisionHistory>
		<InitialReleaseDate>2026-07-24</InitialReleaseDate>
		<CurrentReleaseDate>2026-07-24</CurrentReleaseDate>
		<Generator>
			<Engine>openEuler SA Tool V1.0</Engine>
			<Date>2026-07-24</Date>
		</Generator>
	</DocumentTracking>
	<DocumentNotes>
		<Note Title="Synopsis" Type="General" Ordinal="1" xml:lang="en">perl-DBI security update</Note>
		<Note Title="Summary" Type="General" Ordinal="2" xml:lang="en">An update for perl-DBI is now available for openEuler-22.03-LTS-SP4,openEuler-24.03-LTS-SP1,openEuler-24.03-LTS-SP3,openEuler-24.03-LTS-SP4,openEuler-20.03-LTS-SP4</Note>
		<Note Title="Description" Type="General" Ordinal="3" xml:lang="en">The DBI is the standard database interface module for Perl. It defines a set of methods, variables and conventions that provide a consistent database interface independent of the actual database being used. It is important to remember that the DBI is just an interface. The DBI is a layer of &amp;quot;glue&amp;quot; between an application and one or more database driver modules. It is the driver modules which do most of the real work. The DBI provides a standard interface and framework for the drivers to operate within.

Security Fix(es):

DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders.

The fix for CVE-2026-10879 did not allocate enough memory to handle approximately 1.2-million placeholders.

DBI version 1.650 sets a hard limit of 99,999 placeholders.(CVE-2026-14739)

DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted &lt;= and &gt;= SQL operators on text.

DBI::SQL::Nano, DBI&apos;s built-in mini-SQL engine, evaluated WHERE predicates incorrectly in some cases. In the non-numeric string branch of the is_matched method, &lt;= was evaluated using Perl&apos;s ge operator, and &gt;= was evaluated using Perl&apos;s le operator.

SQL::Nano is the fallback query engine for DBI&apos;s file-backed drivers (DBD::File, DBD::DBM, CSV-style drivers) whenever SQL::Statement is not installed, and is forced whenever DBI_SQL_NANO=1. Queries over such tables use these predicates directly.

The impact depends on the context. Where an application relies on a WHERE clause to filter file-backed data for policy or authorization, an inverted &lt;=/&gt;= comparison silently returns the wrong rows.(CVE-2026-15043)

DBI::ProfileData versions before 1.651 for Perl do not limit the path index.

The path index column of profile dump files is used to allocate an array of data for the parser. An unbounded value allows an attacker to specify a large index and consume available memory.(CVE-2026-60081)

DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row.

When the statement handle had no fields but the source row was non-empty, the internal row-buffer helper would read from a negative array index.

This could be triggered by a caller supplying inconsistent metadata and rows to the prepare method.(CVE-2026-60082)</Note>
		<Note Title="Topic" Type="General" Ordinal="4" xml:lang="en">An update for perl-DBI is now available for openEuler-22.03-LTS-SP4,openEuler-24.03-LTS-SP1,openEuler-24.03-LTS-SP3,openEuler-24.03-LTS-SP4,openEuler-20.03-LTS-SP4.

openEuler Security has rated this update as having a security impact of critical. A Common Vunlnerability Scoring System(CVSS)base score,which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.</Note>
		<Note Title="Severity" Type="General" Ordinal="5" xml:lang="en">Critical</Note>
		<Note Title="Affected Component" Type="General" Ordinal="6" xml:lang="en">perl-DBI</Note>
	</DocumentNotes>
	<DocumentReferences>
		<Reference Type="Self">
			<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-3183</URL>
		</Reference>
		<Reference Type="openEuler CVE">
			<URL>https://www.openeuler.org/en/security/cve/detail/?cveId=CVE-2026-14739</URL>
			<URL>https://www.openeuler.org/en/security/cve/detail/?cveId=CVE-2026-15043</URL>
			<URL>https://www.openeuler.org/en/security/cve/detail/?cveId=CVE-2026-60081</URL>
			<URL>https://www.openeuler.org/en/security/cve/detail/?cveId=CVE-2026-60082</URL>
		</Reference>
		<Reference Type="Other">
			<URL>https://nvd.nist.gov/vuln/detail/CVE-2026-14739</URL>
			<URL>https://nvd.nist.gov/vuln/detail/CVE-2026-15043</URL>
			<URL>https://nvd.nist.gov/vuln/detail/CVE-2026-60081</URL>
			<URL>https://nvd.nist.gov/vuln/detail/CVE-2026-60082</URL>
		</Reference>
	</DocumentReferences>
	<ProductTree xmlns="http://www.icasi.org/CVRF/schema/prod/1.1">
		<Branch Type="Product Name" Name="openEuler">
			<FullProductName ProductID="openEuler-22.03-LTS-SP4" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">openEuler-22.03-LTS-SP4</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS-SP1" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">openEuler-24.03-LTS-SP1</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS-SP3" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">openEuler-24.03-LTS-SP3</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS-SP4" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">openEuler-24.03-LTS-SP4</FullProductName>
			<FullProductName ProductID="openEuler-20.03-LTS-SP4" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">openEuler-20.03-LTS-SP4</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="aarch64">
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-1.643-6.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-debuginfo-1.643-6.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-debugsource-1.643-6.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-1.643-6.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-debuginfo-1.643-6.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-debugsource-1.643-6.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-1.643-6.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-debuginfo-1.643-6.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-debugsource-1.643-6.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-1.648-2.oe2403sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-debuginfo-1.648-2.oe2403sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-debugsource-1.648-2.oe2403sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-1.643-5.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-debuginfo-1.643-5.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-debugsource-1.643-5.oe2003sp4.aarch64.rpm</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="src">
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-1.643-6.oe2203sp4.src.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-1.643-6.oe2403sp1.src.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-1.643-6.oe2403sp3.src.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-1.648-2.oe2403sp4.src.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-1.643-5.oe2003sp4.src.rpm</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="x86_64">
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-1.643-6.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-debuginfo-1.643-6.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-debugsource-1.643-6.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-1.643-6.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-debuginfo-1.643-6.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-debugsource-1.643-6.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-1.643-6.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-debuginfo-1.643-6.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-debugsource-1.643-6.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-1.648-2.oe2403sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-debuginfo-1.648-2.oe2403sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-debugsource-1.648-2.oe2403sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-1.643-5.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debuginfo-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-debuginfo-1.643-5.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-debugsource-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-debugsource-1.643-5.oe2003sp4.x86_64.rpm</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="noarch">
			<FullProductName ProductID="perl-DBI-help-1.643-6" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">perl-DBI-help-1.643-6.oe2203sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-help-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">perl-DBI-help-1.643-6.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-help-1.643-6" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">perl-DBI-help-1.643-6.oe2403sp3.noarch.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-help-1.648-2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP4">perl-DBI-help-1.648-2.oe2403sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="perl-DBI-help-1.643-5" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">perl-DBI-help-1.643-5.oe2003sp4.noarch.rpm</FullProductName>
		</Branch>
	</ProductTree>
	<Vulnerability Ordinal="1" xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1">
		<Notes>
			<Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders.

The fix for CVE-2026-10879 did not allocate enough memory to handle approximately 1.2-million placeholders.

DBI version 1.650 sets a hard limit of 99,999 placeholders.</Note>
		</Notes>
		<ReleaseDate>2026-07-24</ReleaseDate>
		<CVE>CVE-2026-14739</CVE>
		<ProductStatuses>
			<Status Type="Fixed">
				<ProductID>openEuler-22.03-LTS-SP4</ProductID>
				<ProductID>openEuler-24.03-LTS-SP1</ProductID>
				<ProductID>openEuler-24.03-LTS-SP3</ProductID>
				<ProductID>openEuler-24.03-LTS-SP4</ProductID>
				<ProductID>openEuler-20.03-LTS-SP4</ProductID>
			</Status>
		</ProductStatuses>
		<Threats>
			<Threat Type="Impact">
				<Description>Critical</Description>
			</Threat>
		</Threats>
		<CVSSScoreSets>
			<ScoreSet>
				<BaseScore>9.8</BaseScore>
				<Vector>AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</Vector>
			</ScoreSet>
		</CVSSScoreSets>
		<Remediations>
			<Remediation Type="Vendor Fix">
				<Description>perl-DBI security update</Description>
				<DATE>2026-07-24</DATE>
				<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-3183</URL>
			</Remediation>
		</Remediations>
	</Vulnerability>
	<Vulnerability Ordinal="2" xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1">
		<Notes>
			<Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted &lt;= and &gt;= SQL operators on text.

DBI::SQL::Nano, DBI&apos;s built-in mini-SQL engine, evaluated WHERE predicates incorrectly in some cases. In the non-numeric string branch of the is_matched method, &lt;= was evaluated using Perl&apos;s ge operator, and &gt;= was evaluated using Perl&apos;s le operator.

SQL::Nano is the fallback query engine for DBI&apos;s file-backed drivers (DBD::File, DBD::DBM, CSV-style drivers) whenever SQL::Statement is not installed, and is forced whenever DBI_SQL_NANO=1. Queries over such tables use these predicates directly.

The impact depends on the context. Where an application relies on a WHERE clause to filter file-backed data for policy or authorization, an inverted &lt;=/&gt;= comparison silently returns the wrong rows.</Note>
		</Notes>
		<ReleaseDate>2026-07-24</ReleaseDate>
		<CVE>CVE-2026-15043</CVE>
		<ProductStatuses>
			<Status Type="Fixed">
				<ProductID>openEuler-22.03-LTS-SP4</ProductID>
				<ProductID>openEuler-24.03-LTS-SP1</ProductID>
				<ProductID>openEuler-24.03-LTS-SP3</ProductID>
				<ProductID>openEuler-24.03-LTS-SP4</ProductID>
				<ProductID>openEuler-20.03-LTS-SP4</ProductID>
			</Status>
		</ProductStatuses>
		<Threats>
			<Threat Type="Impact">
				<Description>Critical</Description>
			</Threat>
		</Threats>
		<CVSSScoreSets>
			<ScoreSet>
				<BaseScore>9.8</BaseScore>
				<Vector>AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</Vector>
			</ScoreSet>
		</CVSSScoreSets>
		<Remediations>
			<Remediation Type="Vendor Fix">
				<Description>perl-DBI security update</Description>
				<DATE>2026-07-24</DATE>
				<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-3183</URL>
			</Remediation>
		</Remediations>
	</Vulnerability>
	<Vulnerability Ordinal="3" xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1">
		<Notes>
			<Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">DBI::ProfileData versions before 1.651 for Perl do not limit the path index.

The path index column of profile dump files is used to allocate an array of data for the parser. An unbounded value allows an attacker to specify a large index and consume available memory.</Note>
		</Notes>
		<ReleaseDate>2026-07-24</ReleaseDate>
		<CVE>CVE-2026-60081</CVE>
		<ProductStatuses>
			<Status Type="Fixed">
				<ProductID>openEuler-22.03-LTS-SP4</ProductID>
				<ProductID>openEuler-24.03-LTS-SP1</ProductID>
				<ProductID>openEuler-24.03-LTS-SP3</ProductID>
				<ProductID>openEuler-24.03-LTS-SP4</ProductID>
				<ProductID>openEuler-20.03-LTS-SP4</ProductID>
			</Status>
		</ProductStatuses>
		<Threats>
			<Threat Type="Impact">
				<Description>High</Description>
			</Threat>
		</Threats>
		<CVSSScoreSets>
			<ScoreSet>
				<BaseScore>7.5</BaseScore>
				<Vector>AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</Vector>
			</ScoreSet>
		</CVSSScoreSets>
		<Remediations>
			<Remediation Type="Vendor Fix">
				<Description>perl-DBI security update</Description>
				<DATE>2026-07-24</DATE>
				<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-3183</URL>
			</Remediation>
		</Remediations>
	</Vulnerability>
	<Vulnerability Ordinal="4" xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1">
		<Notes>
			<Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row.

When the statement handle had no fields but the source row was non-empty, the internal row-buffer helper would read from a negative array index.

This could be triggered by a caller supplying inconsistent metadata and rows to the prepare method.</Note>
		</Notes>
		<ReleaseDate>2026-07-24</ReleaseDate>
		<CVE>CVE-2026-60082</CVE>
		<ProductStatuses>
			<Status Type="Fixed">
				<ProductID>openEuler-22.03-LTS-SP4</ProductID>
				<ProductID>openEuler-24.03-LTS-SP1</ProductID>
				<ProductID>openEuler-24.03-LTS-SP3</ProductID>
				<ProductID>openEuler-24.03-LTS-SP4</ProductID>
				<ProductID>openEuler-20.03-LTS-SP4</ProductID>
			</Status>
		</ProductStatuses>
		<Threats>
			<Threat Type="Impact">
				<Description>Critical</Description>
			</Threat>
		</Threats>
		<CVSSScoreSets>
			<ScoreSet>
				<BaseScore>9.1</BaseScore>
				<Vector>AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H</Vector>
			</ScoreSet>
		</CVSSScoreSets>
		<Remediations>
			<Remediation Type="Vendor Fix">
				<Description>perl-DBI security update</Description>
				<DATE>2026-07-24</DATE>
				<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-3183</URL>
			</Remediation>
		</Remediations>
	</Vulnerability>
</cvrfdoc>