Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8q6c-j3g3-gr6j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '\0' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '\0' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.

EPSS

Процентиль: 66%
0.0052
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '\0' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.

CVSS3: 7.3
redhat
около 6 лет назад

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '\0' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.

CVSS3: 7.5
nvd
около 6 лет назад

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '\0' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.

CVSS3: 7.5
debian
около 6 лет назад

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT ...

CVSS3: 7.5
fstec
около 6 лет назад

Уязвимость функции zipfile() системы управления базами данных SQLite, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 66%
0.0052
Низкий