ALPINE-CVE-2019-8457
Vulnerability Summary
Timeline
Description
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
CVSS Metrics
- v3.1•CRITICAL•Score: 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- alpine•sqlite
< 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.28.0-r0 | < 3.25.3-r1 | < 3.25.3-r1 | < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.28.0-r0 | ≥ 3.6.0, < 3.25.3-r1 | ≥ 3.6.0, < 3.25.3-r1 | ≥ 3.6.0, < 3.28.0-r0