Описание
An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and truncated into a 32-bit integer. A pointer to partially controlled data can then be written out of bounds.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
sqlite3 | fixed | 3.46.1-8 | package | |
sqlite3 | no-dsa | trixie | package | |
sqlite3 | no-dsa | bookworm | package | |
sqlite3 | not-affected | bullseye | package |
Примечания
https://github.com/google/security-research/security/advisories/GHSA-v2c8-vqqp-hv3g
Fixed by: https://sqlite.org/src/info/63595b74956a9391
Fixed by: https://github.com/sqlite/sqlite/commit/192d0ff8ccf0bf55776a5930cdc64e25f87299d6
Связанные уязвимости
An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and truncated into a 32-bit integer. A pointer to partially controlled data can then be written out of bounds.
An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and truncated into a 32-bit integer. A pointer to partially controlled data can then be written out of bounds.