SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

Project Subscriptions

Vendors Products
Canonical Subscribe
Ubuntu Linux Subscribe
Debian Linux Subscribe
Ontap Select Deploy Administration Utility Subscribe
Communications Element Manager Subscribe
Communications Messaging Server Subscribe
Communications Network Charging And Control Subscribe
Communications Session Report Manager Subscribe
Communications Session Route Manager Subscribe
Enterprise Manager Ops Center Subscribe
Hyperion Infrastructure Technology Subscribe
Instantis Enterprisetrack Subscribe
Mysql Workbench Subscribe
Outside In Technology Subscribe
Zfs Storage Appliance Kit Subscribe
Siemens Subscribe
Sinec Infrastructure Network Services Subscribe
Tenable Subscribe
Tenable.sc Subscribe
Advisories
Source ID Title
Debian DLA Debian DLA DLA-2203-1 sqlite3 security update
Debian DLA Debian DLA DLA-2340-1 sqlite3 security update
EUVD EUVD EUVD-2020-3998 SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.
Ubuntu USN Ubuntu USN USN-4394-1 SQLite vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T11:35:13.644Z

Reserved: 2020-04-09T00:00:00

Link: CVE-2020-11655

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-09T03:15:11.363

Modified: 2024-11-21T04:58:20.267

Link: CVE-2020-11655

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-04-03T00:00:00Z

Links: CVE-2020-11655 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses