CVE Vulnerabilities

CVE-2019-19924

Improper Handling of Exceptional Conditions

Published: Dec 24, 2019 | Modified: Nov 07, 2023
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
5.3 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Ubuntu
MEDIUM

SQLite 3.30.1 mishandles certain parser-tree rewriting, related to expr.c, vdbeaux.c, and window.c. This is caused by incorrect sqlite3WindowRewrite() error handling.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Sqlite Sqlite 3.30.1 (including) 3.30.1 (including)
Red Hat Enterprise Linux 8 RedHat sqlite-0:3.26.0-6.el8 *
Red Hat Enterprise Linux 8 RedHat sqlite-0:3.26.0-6.el8 *
Sqlite3 Ubuntu disco *
Sqlite3 Ubuntu eoan *
Sqlite3 Ubuntu trusty *
Sqlite3 Ubuntu upstream *

References