A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries locally on the SQLite database to cause a denial of service or possible code execution by triggering a use-after-free. The highest threat from this vulnerability is to system availability.
2021-03-23T17:15:13.747
2024-11-21T05:46:10.170
Modified
CVSSv3.1: 5.5 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:N/A:P
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sqlite | sqlite | < 3.34.1 | Yes |
Application | oracle | communications_network_charging_and_control | ≤ 12.0.4.0.0 | Yes |
Application | oracle | communications_network_charging_and_control | 6.0.1 | Yes |
Application | oracle | enterprise_manager_for_oracle_database | 13.4.0.0 | Yes |
Application | oracle | jd_edwards_enterpriseone_tools | < 9.2.6.0 | Yes |
Application | oracle | mysql_workbench | ≤ 8.0.26 | Yes |
Application | oracle | outside_in_technology | 8.5.5 | Yes |
Application | oracle | zfs_storage_appliance_kit | 8.8 | Yes |