QID 181186

Date Published: 2022-11-07

QID 181186: Debian Security Update for sqlite3 (CVE-2019-8457)

Debian has released a security update for SQLite3 from 3.6.0 to and including 3.27.2 which are vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Debian security advisory CVE-2019-8457 for updates and patch information.
    Vendor References

    CVEs related to QID 181186

    Software Advisories
    Advisory ID Software Component Link
    CVE-2019-8457 URL Logo security-tracker.debian.org/tracker/CVE-2019-8457