The package sqlite3 before 5.0.3 are vulnerable to Denial of Service (DoS) which will invoke the toString function of the passed parameter. If passed an invalid Function object it will throw and crash the V8 engine.
                
            Metrics
Affected Vendors & Products
Advisories
    | Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2022-1694 | The package sqlite3 before 5.0.3 are vulnerable to Denial of Service (DoS) which will invoke the toString function of the passed parameter. If passed an invalid Function object it will throw and crash the V8 engine. | 
  Github GHSA | 
                GHSA-9qrh-qjmc-5w2p | Denial-of-Service when binding invalid parameters in sqlite3 | 
Fixes
    Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
        History
                    No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-09-16T18:48:34.205Z
Reserved: 2022-02-24T00:00:00
Link: CVE-2022-21227
No data.
Status : Modified
Published: 2022-05-01T16:15:08.197
Modified: 2024-11-21T06:44:09.070
Link: CVE-2022-21227
                        OpenCVE Enrichment
                    No data.
 EUVD
 Github GHSA