Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-70873

Опубликовано: 12 мар. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sqlite:sqlite:*:*:*:*:*:*:*:*
Версия до 3.51.1 (исключая)

EPSS

Процентиль: 22%
0.00301
Низкий

7.5 High

CVSS3

Дефекты

CWE-244

Связанные уязвимости

CVSS3: 7.5
ubuntu
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

CVSS3: 3.3
redhat
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

CVSS3: 7.5
msrc
4 месяца назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

CVSS3: 7.5
debian
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the ...

CVSS3: 7.5
github
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

EPSS

Процентиль: 22%
0.00301
Низкий

7.5 High

CVSS3

Дефекты

CWE-244