Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-13734

Опубликовано: 10 дек. 2019
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5sqliteNot affected
Red Hat Enterprise Linux 6sqliteNot affected
Red Hat Ansible Tower 3.4 for RHEL 7ansible-tower-34/ansible-tower-memcachedFixedRHBA-2020:054718.02.2020
Red Hat Ansible Tower 3.4 for RHEL 7ansible-tower-35/ansible-tower-memcachedFixedRHBA-2020:054718.02.2020
Red Hat Ansible Tower 3.4 for RHEL 7ansible-tower-37/ansible-tower-memcached-rhel7FixedRHBA-2020:054718.02.2020
Red Hat Enterprise Linux 6 Supplementarychromium-browserFixedRHSA-2019:423816.12.2019
Red Hat Enterprise Linux 7sqliteFixedRHSA-2020:022727.01.2020
Red Hat Enterprise Linux 7.6 Extended Update SupportsqliteFixedRHSA-2020:201405.05.2020
Red Hat Enterprise Linux 8sqliteFixedRHSA-2020:027329.01.2020
Red Hat Enterprise Linux 8sqliteFixedRHSA-2020:027329.01.2020

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=1781980sqlite: fts3: improve shadow table corruption detection

EPSS

Процентиль: 90%
0.05904
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 6 лет назад

Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
nvd
около 6 лет назад

Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
debian
около 6 лет назад

Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 a ...

CVSS3: 8.8
github
больше 3 лет назад

Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

oracle-oval
около 6 лет назад

ELSA-2020-0273: sqlite security update (IMPORTANT)

EPSS

Процентиль: 90%
0.05904
Низкий

8.8 High

CVSS3