Description
SQLite through 3.40.0, when relying on --safe for execution of an untrusted CLI script, does not properly implement the azProhibitedFunctions protection mechanism, and instead allows UDF functions such as WRITEFILE.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-49687 | SQLite through 3.40.0, when relying on --safe for execution of an untrusted CLI script, does not properly implement the azProhibitedFunctions protection mechanism, and instead allows UDF functions such as WRITEFILE. |
Ubuntu USN |
USN-6566-1 | SQLite vulnerabilities |
References
History
Mon, 05 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-05T16:11:57.403Z
Reserved: 2022-12-12T00:00:00.000Z
Link: CVE-2022-46908
Updated: 2024-08-03T14:47:27.711Z
Status : Modified
Published: 2022-12-12T06:15:10.793
Modified: 2025-05-05T16:15:22.573
Link: CVE-2022-46908
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN