Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-35527

Опубликовано: 23 фев. 2020
Источник: redhat
CVSS3: 8.1
EPSS Низкий

Описание

In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause.

An out-of-bounds read vulnerability was found in SQLite. This security flaw occurs when the ALTER TABLE for views has a nested FROM clause. This flaw allows an attacker to triage an out-of-bounds read and access confidential data successfully.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6sqliteOut of support scope
Red Hat Enterprise Linux 7sqliteOut of support scope
Red Hat Enterprise Linux 9sqliteNot affected
Red Hat Enterprise Linux 8sqliteFixedRHSA-2022:710825.10.2022
Red Hat Enterprise Linux 8sqliteFixedRHSA-2022:710825.10.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=2122329sqlite: Out of bounds access during table rename

EPSS

Процентиль: 42%
0.00199
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 3 года назад

In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause.

CVSS3: 9.8
nvd
почти 3 года назад

In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause.

CVSS3: 9.8
debian
почти 3 года назад

In SQLite 3.31.1, there is an out of bounds access problem through ALT ...

CVSS3: 9.8
github
почти 3 года назад

In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause.

CVSS3: 9.8
fstec
почти 3 года назад

Уязвимость системы управления базами данных SQLite , вызванная переполнением буфера, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 42%
0.00199
Низкий

8.1 High

CVSS3