Описание
SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
sqlite3 | fixed | 3.30.1+fossil191229-1 | package | |
sqlite3 | ignored | buster | package | |
sqlite3 | not-affected | stretch | package | |
sqlite3 | not-affected | jessie | package | |
sqlite | not-affected | package |
Примечания
https://github.com/sqlite/sqlite/commit/527cbd4a104cb93bf3994b3dd3619a6299a78b13
read-only shadow tables introduced in https://github.com/sqlite/sqlite/commit/84c501bac16576916840daffb671b72cf1f75625 (3.26)
EPSS
Связанные уязвимости
SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.
SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.
SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.
SQLite 3.30.1, during handling of CREATE TABLE and CREATE VIEW statements, does not consider confusion with a shadow table name, as demonstrated by the sqlite_ substring.
Уязвимость программного обеспечения для СУБД SQLite, связанная с ошибками при обработке чисел, позволяющая нарушителю вызвать отказ в обслуживании
EPSS