Unrated severityNVD Advisory· Published Aug 24, 2021· Updated Nov 3, 2025
CVE-2021-36690
CVE-2021-36690
Description
A segmentation fault can occur in the sqlite3.exe command-line component of SQLite 3.36.0 via the idxGetTableInfo function when there is a crafted SQL query. NOTE: the vendor disputes the relevance of this report because a sqlite3.exe user already has full privileges (e.g., is intentionally allowed to execute commands). This report does NOT imply any problem in the SQLite library.
Affected products
38- SQLite/SQLitedescription
- osv-coords37 versionspkg:bitnami/sqlitepkg:rpm/opensuse/sqlite3&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/sqlite3&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/sqlite3&distro=openSUSE%20Leap%20Micro%205.2pkg:rpm/suse/sqlite3&distro=SUSE%20Enterprise%20Storage%206pkg:rpm/suse/sqlite3&distro=SUSE%20Enterprise%20Storage%207pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-ESPOSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-ESPOSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCLpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-BCLpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP1-BCLpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP1-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-BCLpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP1pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/sqlite3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/sqlite3&distro=SUSE%20Manager%20Proxy%204.1pkg:rpm/suse/sqlite3&distro=SUSE%20Manager%20Retail%20Branch%20Server%204.1pkg:rpm/suse/sqlite3&distro=SUSE%20Manager%20Server%204.1pkg:rpm/suse/sqlite3&distro=SUSE%20OpenStack%20Cloud%209pkg:rpm/suse/sqlite3&distro=SUSE%20OpenStack%20Cloud%20Crowbar%209
>= 3.36.0, < 3.36.1+ 36 more
- (no CPE)range: >= 3.36.0, < 3.36.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-150000.3.17.1
- (no CPE)range: < 3.39.3-9.23.1
- (no CPE)range: < 3.39.3-9.23.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- seclists.org/fulldisclosure/2022/Oct/28mitremailing-list
- seclists.org/fulldisclosure/2022/Oct/39mitremailing-list
- seclists.org/fulldisclosure/2022/Oct/41mitremailing-list
- seclists.org/fulldisclosure/2022/Oct/47mitremailing-list
- seclists.org/fulldisclosure/2022/Oct/49mitremailing-list
- support.apple.com/kb/HT213446mitre
- support.apple.com/kb/HT213486mitre
- support.apple.com/kb/HT213487mitre
- support.apple.com/kb/HT213488mitre
- www.sqlite.org/forum/forumpost/718c0a8d17mitre
News mentions
0No linked articles in our index yet.