CVE Vulnerabilities

CVE-2019-20218

Improper Handling of Exceptional Conditions

Published: Jan 02, 2020 | Modified: Oct 07, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
7.5 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
LOW

selectExpander in select.c in SQLite 3.30.1 proceeds with WITH stack unwinding even after a parsing error.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Sqlite Sqlite 3.30.1 (including) 3.30.1 (including)
Red Hat Enterprise Linux 8 RedHat sqlite-0:3.26.0-11.el8 *
Red Hat Enterprise Linux 8 RedHat sqlite-0:3.26.0-11.el8 *
Sqlite3 Ubuntu bionic *
Sqlite3 Ubuntu disco *
Sqlite3 Ubuntu eoan *
Sqlite3 Ubuntu precise/esm *
Sqlite3 Ubuntu trusty *
Sqlite3 Ubuntu upstream *
Sqlite3 Ubuntu xenial *

References