Lucene search

K
f5F5F5:K16950
HistoryJul 10, 2015 - 12:00 a.m.

K16950 : SQLite vulnerability CVE-2015-3416

2015-07-1000:00:00
my.f5.com
20

8.9 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.8%

Security Advisory Description

The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to cause a denial of service (integer overflow and stack-based buffer overflow) or possibly have unspecified other impact via large integers in a crafted printf function call in a SELECT statement. (CVE-2015-3416)
Impact
Attackers may be able to cause a denial-of service (DoS) attack.