« List of all CVEs

CVE-2019-8457

Published: 5/30/2019 Last updated: 8/4/2024 Reserved: 2/18/2019

SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.

CNA assigner: checkpoint (897c38be-0345-43cd-b6cf-fe179e0c4f45) Requested by: n/a

Opam packages affected (4)

conf-mingw-w64-sqlite3-i686 conf-mingw-w64-sqlite3-x86_64 conf-sqlite3 lemonade-sqlite

Products affected (1)

Product Vendor Version
SQLite n/a < 2.6.0

References (30)