Search CVE reports


Toggle filters

31 – 40 of 90 results


CVE-2020-9991

Low priority
Ignored

This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, iOS 14.0 and iPadOS 14.0, iCloud for Windows 7.21, tvOS 14.0. A remote attacker may be able to cause a denial of service.

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not in release Not in release Not affected Not affected Not affected
sqlite3 Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-9849

Low priority
Ignored

An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, iOS 14.0 and iPadOS 14.0, iTunes for Windows 12.10.9, iCloud for Windows 11.5, tvOS 14.0. A...

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not in release Not in release Not affected Not affected Not affected
sqlite3 Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-15358

Medium priority

Some fixes available 1 of 2

In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not affected Not affected
sqlite3 Fixed Not affected
Show less packages

CVE-2020-9794

Medium priority
Ignored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5, iTunes 12.10.7 for Windows, iCloud for Windows 11.2, iCloud...

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not in release Not in release Not affected Not affected Not affected
sqlite3 Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-13871

Medium priority
Not affected

SQLite 3.32.2 has a use-after-free in resetAccumulator in select.c because the parse tree rewrite for window functions is too late.

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not affected Not affected
sqlite3 Not affected Not affected
Show less packages

CVE-2020-13632

Medium priority
Fixed

ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not affected Not affected
sqlite3 Fixed Fixed
Show less packages

CVE-2020-13631

Low priority

Some fixes available 2 of 8

SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and build.c.

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Ignored Ignored
sqlite3 Fixed Ignored
Show less packages

CVE-2020-13630

Medium priority
Fixed

ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.

2 affected packages

sqlite, sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite Not affected Not affected
sqlite3 Fixed Fixed
Show less packages

CVE-2020-13435

Medium priority
Fixed

SQLite through 3.32.0 has a segmentation fault in sqlite3ExprCodeTarget in expr.c.

1 affected package

sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite3 Fixed Not affected
Show less packages

CVE-2020-13434

Medium priority
Fixed

SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c.

1 affected package

sqlite3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sqlite3 Fixed Fixed
Show less packages