SQLite 3.39.0

CPE Details

SQLite 3.39.0
3.39.0
2022-08-08
13h15 +00:00
2022-08-22
13h08 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:sqlite:sqlite:3.39.0:*:*:*:*:*:*:*

Informations

Vendor

sqlite

Product

sqlite

Version

3.39.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-7104 2023-12-25 21h00 +00:00 A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue affects the function sessionReadRecord of the file ext/session/sqlite3session.c of the component make alltest Handler. The manipulation leads to heap-based buffer overflow. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-248999.
7.3
High
CVE-2022-46908 2022-12-11 23h00 +00:00 SQLite through 3.40.0, when relying on --safe for execution of an untrusted CLI script, does not properly implement the azProhibitedFunctions protection mechanism, and instead allows UDF functions such as WRITEFILE.
7.3
High
CVE-2022-35737 2022-08-02 22h00 +00:00 SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to a C API.
7.5
High