A heap use-after-free issue has been identified in SQLite in the jsonParseAddNodeArray() function in sqlite3.c. This flaw allows a local attacker to leverage a victim to pass specially crafted malicious input to the application, potentially causing a crash and leading to a denial of service.
Version | Score | Severity | Vector String |
---|---|---|---|
3.1 | 4.7 | Medium | CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H |
Product | Vendor | Version |
---|---|---|
Red Hat Enterprise Linux 8 | Red Hat | <= 202 |
< 21.2*-EVO | ||
Red Hat Enterprise Linux 6 | Red Hat | n/a |
Red Hat Enterprise Linux 7 | Red Hat | 3.3.2XO |
Red Hat Enterprise Linux 8 | Red Hat | 8.0.1.2 |
Red Hat Enterprise Linux 9 | Red Hat | < 22.2R3-EVO |