Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-70873

Опубликовано: 12 мар. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

not-affected

code not compiled
esm-apps/bionic

not-affected

code not compiled
esm-apps/focal

not-affected

code not compiled
esm-apps/jammy

not-affected

code not compiled
esm-apps/xenial

not-affected

code not compiled
esm-infra-legacy/trusty

not-affected

code not compiled
jammy

not-affected

code not compiled
noble

DNE

questing

DNE

Показывать по

РелизСтатусПримечание
devel

not-affected

code not compiled
esm-infra-legacy/trusty

not-affected

code not compiled
esm-infra-legacy/xenial

not-affected

code not compiled
esm-infra/bionic

not-affected

code not compiled
esm-infra/focal

not-affected

code not compiled
esm-infra/xenial

not-affected

code not compiled
jammy

not-affected

code not compiled
noble

not-affected

code not compiled
questing

not-affected

code not compiled
upstream

needs-triage

Показывать по

EPSS

Процентиль: 22%
0.00301
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

CVSS3: 7.5
nvd
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

CVSS3: 7.5
msrc
4 месяца назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

CVSS3: 7.5
debian
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the ...

CVSS3: 7.5
github
5 месяцев назад

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

EPSS

Процентиль: 22%
0.00301
Низкий

7.5 High

CVSS3