Описание
Security update for sqlite3
This update for sqlite3 fixes the following issue:
Security issue fixed:
- CVE-2019-8457: Fixed a Heap out-of-bound read in rtreenode() when handling invalid rtree tables (bsc#1136976).
Список пакетов
SUSE Linux Enterprise Point of Sale 11 SP3
libsqlite3-0-3.7.6.3-1.4.7.9.1
sqlite3-3.7.6.3-1.4.7.9.1
SUSE Linux Enterprise Server 11 SP4-LTSS
libsqlite3-0-3.7.6.3-1.4.7.9.1
libsqlite3-0-32bit-3.7.6.3-1.4.7.9.1
sqlite3-3.7.6.3-1.4.7.9.1
Ссылки
- Link for SUSE-SU-2019:14083-1
- E-Mail link for SUSE-SU-2019:14083-1
- SUSE Security Ratings
- SUSE Bug 1136976
- SUSE CVE CVE-2019-8457 page
Описание
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
Затронутые продукты
SUSE Linux Enterprise Point of Sale 11 SP3:libsqlite3-0-3.7.6.3-1.4.7.9.1
SUSE Linux Enterprise Point of Sale 11 SP3:sqlite3-3.7.6.3-1.4.7.9.1
SUSE Linux Enterprise Server 11 SP4-LTSS:libsqlite3-0-3.7.6.3-1.4.7.9.1
SUSE Linux Enterprise Server 11 SP4-LTSS:libsqlite3-0-32bit-3.7.6.3-1.4.7.9.1
Ссылки
- CVE-2019-8457
- SUSE Bug 1136976
- SUSE Bug 1145004
- SUSE Bug 1154162