Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-11655

Опубликовано: 09 апр. 2020
Источник: debian

Описание

SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sqlite3fixed3.31.1-5package
sqlite3not-affectedbusterpackage
sqlitenot-affectedpackage

Примечания

  • https://www.sqlite.org/cgi/src/tktview?name=af4556bb5c

  • Issue covered before: https://www.sqlite.org/cgi/src/info/712e47714863a8ed

  • Fixed by: https://www.sqlite.org/cgi/src/info/4a302b42c7bf5e11

  • https://github.com/sqlite/sqlite/commit/3251a2031bfd29f338a5fda1a08c18878296d354

  • https://github.com/sqlite/sqlite/commit/c415d91007e1680e4eb17def583b202c3c83c718

  • https://github.com/sqlite/sqlite/commit/4db7ab53f9c30e2e22731ace93ab6b18eef6c4ae

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

CVSS3: 7.5
redhat
почти 6 лет назад

SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

CVSS3: 7.5
nvd
почти 6 лет назад

SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

CVSS3: 7.5
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.5
github
больше 3 лет назад

SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.