Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-54620

7 дней назад

(sqlite3 provides Ruby bindings for the SQLite3 embedded database. From ...)

EPSS: Низкий
redhat логотип

CVE-2026-54620

7 дней назад

A flaw was found in sqlite3-ruby, a Ruby binding for the SQLite3 embedded database. This vulnerability occurs because callbacks used for SQLite aggregate functions can be prematurely freed while still being referenced during aggregation. A local attacker could potentially exploit this use-after-free condition to cause unpredictable application behavior, which may lead to information disclosure or a denial of service (DoS).

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2026-54620

7 дней назад

sqlite3 provides Ruby bindings for the SQLite3 embedded database. From 2.1.0 to 2.9.4, the callbacks used for SQLite aggregate functions can be freed while still referenced during aggregation, resulting in a use-after-free. This issue is fixed in version 2.9.5.

EPSS: Низкий
debian логотип

CVE-2026-54620

7 дней назад

sqlite3 provides Ruby bindings for the SQLite3 embedded database. From ...

EPSS: Низкий
github логотип

GHSA-j7fr-3v8c-3qc3

7 дней назад

sqlite3-ruby has Use-After-Free in SQLite Aggregate Function Callbacks

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-54620

(sqlite3 provides Ruby bindings for the SQLite3 embedded database. From ...)

0%
Низкий
7 дней назад
redhat логотип
CVE-2026-54620

A flaw was found in sqlite3-ruby, a Ruby binding for the SQLite3 embedded database. This vulnerability occurs because callbacks used for SQLite aggregate functions can be prematurely freed while still being referenced during aggregation. A local attacker could potentially exploit this use-after-free condition to cause unpredictable application behavior, which may lead to information disclosure or a denial of service (DoS).

CVSS3: 4.5
0%
Низкий
7 дней назад
nvd логотип
CVE-2026-54620

sqlite3 provides Ruby bindings for the SQLite3 embedded database. From 2.1.0 to 2.9.4, the callbacks used for SQLite aggregate functions can be freed while still referenced during aggregation, resulting in a use-after-free. This issue is fixed in version 2.9.5.

0%
Низкий
7 дней назад
debian логотип
CVE-2026-54620

sqlite3 provides Ruby bindings for the SQLite3 embedded database. From ...

0%
Низкий
7 дней назад
github логотип
GHSA-j7fr-3v8c-3qc3

sqlite3-ruby has Use-After-Free in SQLite Aggregate Function Callbacks

0%
Низкий
7 дней назад

Уязвимостей на страницу