Lucene search

K
kasperskyKaspersky LabKLA10565
HistoryApr 24, 2015 - 12:00 a.m.

KLA10565 Denial of service vulnerabilities in SQLite

2015-04-2400:00:00
Kaspersky Lab
threats.kaspersky.com
59

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8.9 High

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

82.0%

Multiple integer and buffer overflows were found in SQLite. By exploiting these vulnerabilities malicious users can cause denial of service or conduct other unknown impact. These vulnerabilities can be exploited remotely via a specially designed input.

Original advisories

Related products

SQLite

CVE list

CVE-2015-3414 critical

CVE-2015-3416 critical

CVE-2015-3415 critical

Solution

Update to the latest version

Get SQLite

Impacts

  • DoS

Denial of service. Exploitation of vulnerabilities with this impact can lead to loss of system availability or critical functional fault.

Affected Products

  • SQLite versions earlier thanΒ 3.8.9

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8.9 High

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

82.0%