VYPR

rpm package

opensuse/sqlite3&distro=openSUSE Leap Micro 5.3

pkg:rpm/opensuse/sqlite3&distro=openSUSE%20Leap%20Micro%205.3

Vulnerabilities (2)

  • CVE-2023-2137Apr 19, 2023
    affected < 3.44.0-150000.3.23.1fixed 3.44.0-150000.3.23.1

    Heap buffer overflow in sqlite in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

  • CVE-2022-46908Dec 12, 2022
    affected < 3.39.3-150000.3.20.1fixed 3.39.3-150000.3.20.1

    SQLite through 3.40.0, when relying on --safe for execution of an untrusted CLI script, does not properly implement the azProhibitedFunctions protection mechanism, and instead allows UDF functions such as WRITEFILE.