Show filters
95 Total Results
Displaying 71-80 of 95
Sort by:
Attacker Value
Unknown

CVE-2017-15286

Disclosure Date: October 12, 2017 (last updated November 26, 2024)
SQLite 3.20.1 has a NULL pointer dereference in tableColumnList in shell.c because it fails to consider certain cases where `sqlite3_step(pStmt)==SQLITE_ROW` is false and a data structure is never initialized.
0
Attacker Value
Unknown

CVE-2017-13685

Disclosure Date: August 29, 2017 (last updated November 26, 2024)
The dump_callback function in SQLite 3.20.0 allows remote attackers to cause a denial of service (EXC_BAD_ACCESS and application crash) via a crafted file.
0
Attacker Value
Unknown

CVE-2017-10989

Disclosure Date: July 07, 2017 (last updated November 26, 2024)
The getNodeSize function in ext/rtree/rtree.c in SQLite through 3.19.3, as used in GDAL and other products, mishandles undersized RTree blobs in a crafted database, leading to a heap-based buffer over-read or possibly unspecified other impact.
0
Attacker Value
Unknown

CVE-2016-6153

Disclosure Date: September 26, 2016 (last updated November 08, 2023)
os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm, which might allow local users to obtain sensitive information, cause a denial of service (application crash), or have unspecified other impact by leveraging use of the current working directory for temporary files.
0
Attacker Value
Unknown

CVE-2015-6607

Disclosure Date: October 06, 2015 (last updated October 05, 2023)
SQLite before 3.8.9, as used in Android before 5.1.1 LMY48T, allows attackers to gain privileges via a crafted application, aka internal bug 20099586.
0
Attacker Value
Unknown

CVE-2015-5895

Disclosure Date: September 18, 2015 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in SQLite before 3.8.10.2, as used in Apple iOS before 9, have unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2013-7443

Disclosure Date: August 12, 2015 (last updated October 05, 2023)
Buffer overflow in the skip-scan optimization in SQLite 3.8.2 allows remote attackers to cause a denial of service (crash) via crafted SQL statements.
0
Attacker Value
Unknown

CVE-2015-3717

Disclosure Date: July 03, 2015 (last updated October 05, 2023)
Multiple buffer overflows in the printf functionality in SQLite, as used in Apple iOS before 8.4 and OS X before 10.10.4, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2015-3416

Disclosure Date: April 24, 2015 (last updated October 05, 2023)
The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to cause a denial of service (integer overflow and stack-based buffer overflow) or possibly have unspecified other impact via large integers in a crafted printf function call in a SELECT statement.
0
Attacker Value
Unknown

CVE-2015-3414

Disclosure Date: April 24, 2015 (last updated October 05, 2023)
SQLite before 3.8.9 does not properly implement the dequoting of collation-sequence names, which allows context-dependent attackers to cause a denial of service (uninitialized memory access and application crash) or possibly have unspecified other impact via a crafted COLLATE clause, as demonstrated by COLLATE"""""""" at the end of a SELECT statement.
0