Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-21227

Опубликовано: 01 мая 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

The package sqlite3 before 5.0.3 are vulnerable to Denial of Service (DoS) which will invoke the toString function of the passed parameter. If passed an invalid Function object it will throw and crash the V8 engine.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

5.0.11+ds1-1build1
esm-apps-legacy/xenial

needs-triage

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

not-affected

5.0.11+ds1-1build1
esm-apps/resolute

not-affected

5.0.11+ds1-1build1
esm-apps/xenial

ignored

end of ESM support, was needs-triage
focal

ignored

end of standard support, was needs-triage

Показывать по

EPSS

Процентиль: 80%
0.02068
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 4 лет назад

The package sqlite3 before 5.0.3 are vulnerable to Denial of Service (DoS) which will invoke the toString function of the passed parameter. If passed an invalid Function object it will throw and crash the V8 engine.

CVSS3: 7.5
nvd
больше 4 лет назад

The package sqlite3 before 5.0.3 are vulnerable to Denial of Service (DoS) which will invoke the toString function of the passed parameter. If passed an invalid Function object it will throw and crash the V8 engine.

CVSS3: 7.5
debian
больше 4 лет назад

The package sqlite3 before 5.0.3 are vulnerable to Denial of Service ( ...

CVSS3: 7.5
github
больше 4 лет назад

Denial-of-Service when binding invalid parameters in sqlite3

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость компонента V8 системы управления базами данных SQLite позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 80%
0.02068
Низкий

5 Medium

CVSS2

7.5 High

CVSS3