Lucene search

K
ubuntuUbuntuUSN-5716-1
HistoryNov 07, 2022 - 12:00 a.m.

SQLite vulnerability

2022-11-0700:00:00
ubuntu.com
25
sqlite vulnerability
ubuntu 22.04 lts
ubuntu 20.04 lts
ubuntu 18.04 esm
denial of service
arbitrary code execution

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

9.1 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.6%

Releases

  • Ubuntu 22.04 LTS
  • Ubuntu 20.04 LTS
  • Ubuntu 18.04 ESM

Packages

  • sqlite3 - C library that implements an SQL database engine

Details

It was discovered that SQLite incorrectly handled certain long string
arguments. An attacker could use this issue to cause SQLite to crash,
resulting in a denial of service, or possibly execute arbitrary code.

OSVersionArchitecturePackageVersionFilename
Ubuntu22.04noarchlibsqlite3-0< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchlemon< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchlemon-dbgsym< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchlibsqlite3-0-dbgsym< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchlibsqlite3-dev< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchlibsqlite3-tcl< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchlibsqlite3-tcl-dbgsym< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchsqlite3< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchsqlite3-dbgsym< 3.37.2-2ubuntu0.1UNKNOWN
Ubuntu22.04noarchsqlite3-doc< 3.37.2-2ubuntu0.1UNKNOWN
Rows per page:
1-10 of 321

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

9.1 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.6%