[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252212

 
 

909

 
 

196748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.6] sqlite: NULL pointer dereference in tableColumnList (CVE-2017-15286)

ID: oval:org.secpod.oval:def:1801536Date: (C)2019-09-18   (M)2022-01-13
Class: PATCHFamily: unix




SQLite 3.20.1 has a NULL pointer dereference in tableColumnList in shell.c because it fails to consider certain cases where `sqlite3_step==SQLITE_ROW` is false and a data structure is never initialized. An attacker might use this for a denial of service. Fixed in:¶ 3.21.0

Platform:
Alpine Linux 3.6
Product:
sqlite
Reference:
8545
CVE-2017-15286
CVE    1
CVE-2017-15286
CPE    2
cpe:/a:sqlite:sqlite
cpe:/o:alpinelinux:alpine_linux:3.6

© SecPod Technologies