CVE-2020-13434
Summary
| CVE | CVE-2020-13434 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-05-24 22:15:00 UTC |
| Updated | 2023-11-07 03:16:00 UTC |
| Description | SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| May 2020 SQLite Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
Third Party Advisory |
| About the security content of iCloud for Windows 11.5 - Apple Support |
CONFIRM |
support.apple.com |
|
| SQLite: View Ticket |
MISC |
www.sqlite.org |
Exploit, Patch, Vendor Advisory |
| Oracle Critical Patch Update Advisory - July 2020 |
MISC |
www.oracle.com |
|
| Oracle Critical Patch Update Advisory - April 2022 |
MISC |
www.oracle.com |
|
| USN-4394-1: SQLite vulnerabilities | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
|
| Full Disclosure: APPLE-SA-2020-11-13-6 Additional information for APPLE-SA-2020-09-16-4 watchOS 7.0 |
FULLDISC |
seclists.org |
|
| FreeBSD-SA-20:22 |
FREEBSD |
security.FreeBSD.org |
|
| Full Disclosure: APPLE-SA-2020-12-14-4 Additional information for APPLE-SA-2020-11-13-1 macOS Big Sur 11.0.1 |
FULLDISC |
seclists.org |
|
| About the security content of macOS Big Sur 11.0.1 - Apple Support |
CONFIRM |
support.apple.com |
|
| SQLite: Multiple vulnerabilities (GLSA 202007-26) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| About the security content of tvOS 14.0 - Apple Support |
CONFIRM |
support.apple.com |
|
| [SECURITY] Fedora 32 Update: sqlite-3.32.1-1.fc32 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| About the security content of watchOS 7.0 - Apple Support |
CONFIRM |
support.apple.com |
|
| [SECURITY] [DLA 2340-1] sqlite3 security update |
MLIST |
lists.debian.org |
|
| [SECURITY] [DLA 2221-1] sqlite3 |
MLIST |
lists.debian.org |
Mailing List, Third Party Advisory |
| SQLite: Check-in [d08d3405] |
MISC |
www.sqlite.org |
Patch, Vendor Advisory |
| [SECURITY] Fedora 32 Update: sqlite-3.32.1-1.fc32 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
Third Party Advisory |
| About the security content of iOS 14.0 and iPadOS 14.0 - Apple Support |
CONFIRM |
support.apple.com |
|
| Full Disclosure: APPLE-SA-2020-11-13-4 Additional information for APPLE-SA-2020-09-16-2 tvOS 14.0 |
FULLDISC |
seclists.org |
|
| Full Disclosure: APPLE-SA-2020-11-13-3 Additional information for APPLE-SA-2020-09-16-1 iOS 14.0 and iPadOS 14.0 |
FULLDISC |
seclists.org |
|
| About the security content of iTunes 12.10.9 for Windows - Apple Support |
CONFIRM |
support.apple.com |
|
| Oracle Critical Patch Update Advisory - April 2021 |
MISC |
www.oracle.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159186 Oracle Enterprise Linux Security Update for sqlite (ELSA-2021-1581)
- 239338 Red Hat Update for sqlite (RHSA-2021:1581)
- 296073 Oracle Solaris 11.4 Support Repository Update (SRU) 24.75.2 Missing (CPUJUL2020)
- 377330 Alibaba Cloud Linux Security Update for mingw packages (ALINUX3-SA-2022:0121)
- 377341 Alibaba Cloud Linux Security Update for sqlite (ALINUX3-SA-2022:0111)
- 500654 Alpine Linux Security Update for sqlite
- 504422 Alpine Linux Security Update for sqlite
- 591406 Siemens SIMATIC S7-1500 CPU GNU/Linux subsystem Multiple Vulnerabilities (SSB-439005, ICSA-22-104-13)
- 750831 SUSE Enterprise Linux Security Update for sqlite3 (SUSE-SU-2021:2320-1)
- 750834 OpenSUSE Security Update for sqlite3 (openSUSE-SU-2021:2320-1)
- 750856 OpenSUSE Security Update for sqlite3 (openSUSE-SU-2021:1058-1)
- 751168 SUSE Enterprise Linux Security Update for sqlite3 (SUSE-SU-2021:3215-1)
- 940008 AlmaLinux Security Update for sqlite (ALSA-2021:1581)
- 940088 AlmaLinux Security Update for mingw (ALSA-2021:1968)
- 960229 Rocky Linux Security Update for mingw (RLSA-2021:1968)
- 960754 Rocky Linux Security Update for sqlite (RLSA-2021:1581)