VYPR

Bitnami package

sqlite

pkg:bitnami/sqlite

Vulnerabilities (26)

  • CVE-2020-13632May 27, 2020
    affected < 3.32.0fixed 3.32.0

    ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.

  • CVE-2020-13434May 24, 2020
    affected < 3.32.1fixed 3.32.1

    SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c.

  • CVE-2020-13435May 24, 2020
    affected < 3.32.1fixed 3.32.1

    SQLite through 3.32.0 has a segmentation fault in sqlite3ExprCodeTarget in expr.c.

  • CVE-2020-11655Apr 9, 2020
    affected < 3.31.2fixed 3.31.2

    SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

  • CVE-2020-11656Apr 9, 2020
    affected < 3.31.2fixed 3.31.2

    In SQLite through 3.31.1, the ALTER TABLE implementation has a use-after-free, as demonstrated by an ORDER BY clause that belongs to a compound SELECT statement.

  • CVE-2020-9327Feb 21, 2020
    affected >= 3.31.1, < 3.31.2fixed 3.31.2

    In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations.

Page 2 of 2