Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-35737

Опубликовано: 22 июл. 2022
Источник: redhat
CVSS3: 5.9
EPSS Средний

Описание

SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to a C API.

An array-bounds overflow vulnerability was discovered in SQLite. The vulnerability occurs when handling an overly large input passed as a string argument to some of the C-language APIs provided by SQLite. This flaw allows a remote attacker to pass specially crafted large input to the application and perform a denial of service (DoS) attack.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7sqliteOut of support scope
Red Hat Enterprise Linux 8sqliteFixedRHSA-2023:011012.01.2023
Red Hat Enterprise Linux 8sqliteFixedRHSA-2023:011012.01.2023
Red Hat Enterprise Linux 8.6 Extended Update SupportsqliteFixedRHSA-2024:042525.01.2024
Red Hat Enterprise Linux 9sqliteFixedRHSA-2023:033923.01.2023
Red Hat Enterprise Linux 9sqliteFixedRHSA-2023:033923.01.2023

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-129
https://bugzilla.redhat.com/show_bug.cgi?id=2110291sqlite: an array-bounds overflow if billions of bytes are used in a string argument to a C API

EPSS

Процентиль: 98%
0.63953
Средний

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 3 лет назад

SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to a C API.

CVSS3: 7.5
nvd
около 3 лет назад

SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to a C API.

msrc
больше 1 года назад

MITRE: CVE-2022-35737 SQLite allows an array-bounds overflow

CVSS3: 7.5
debian
около 3 лет назад

SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-b ...

rocky
больше 2 лет назад

Moderate: sqlite security update

EPSS

Процентиль: 98%
0.63953
Средний

5.9 Medium

CVSS3