Описание
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | sqlite | Not affected | ||
| Red Hat Enterprise Linux 6 | sqlite | Out of support scope | ||
| Red Hat Enterprise Linux 7 | sqlite | Will not fix | ||
| Red Hat Enterprise Linux 8 | sqlite | Fixed | RHSA-2020:1810 | 28.04.2020 |
| Red Hat Enterprise Linux 8 | sqlite | Fixed | RHSA-2020:1810 | 28.04.2020 |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1716881sqlite: heap out-of-bound read in function rtreenode()
7.5 High
CVSS3
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 6 лет назад
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
CVSS3: 9.8
nvd
больше 6 лет назад
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
CVSS3: 9.8
debian
больше 6 лет назад
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-o ...
7.5 High
CVSS3