Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c8x7-qp4j-858w

Опубликовано: 27 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.2

Описание

sqlite 3.41 is vulnerable to use after free in the JSON extraction function. After releasing JsonParse object memory via jsonParseFree(), the program still accesses internal member of the freed pointer, which can cause service crash and denial of service.

sqlite 3.41 is vulnerable to use after free in the JSON extraction function. After releasing JsonParse object memory via jsonParseFree(), the program still accesses internal member of the freed pointer, which can cause service crash and denial of service.

6.2 Medium

CVSS3

Дефекты

CWE-416

Связанные уязвимости

ubuntu
10 дней назад

sqlite 3.41 is vulnerable to use after free in the JSON extraction function. After releasing JsonParse object memory via jsonParseFree(), the program still accesses internal member of the freed pointer, which can cause service crash and denial of service.

CVSS3: 7.5
redhat
10 дней назад

A flaw was found in SQLite. A remote attacker could exploit a use-after-free vulnerability in the JSON extraction function. This occurs when the program attempts to access memory after it has been freed, specifically within the `JsonParse` object. Successful exploitation of this vulnerability can lead to a service crash and a denial of service (DoS) for affected systems.

nvd
10 дней назад

Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

6.2 Medium

CVSS3

Дефекты

CWE-416