MGASA-2023-0208
Advisory lineage Upstream: 2 Downstream: 0
Upstream
Published: 28 Jun 2023, 05:21
Last modified:16 Apr 2026, 04:23
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
28 Jun 2023, 05:21
Published
Vulnerability first disclosed
16 Apr 2026, 04:23
Last Modified
Vulnerability information updated
Description
Updated sqlite packages fix security vulnerability os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm, which might allow local users to obtain sensitive information, cause a denial of service (application crash), or have unspecified other impact by leveraging use of the current working directory for temporary files. (CVE-2016-6153) In SQLite through 3.22.0, databases whose schema is corrupted using a CREATE TABLE AS statement could cause a NULL pointer dereference, related to build.c and prepare (CVE-2018-8740)
Affected Systems
- mageia•sqlite
< 2.8.17-26.1.mga8