PT-2023-3637 · Sqlite+1 · Sqlite+1

Published

2023-02-24

·

Updated

2023-10-25

·

CVE-2023-36191

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions SQLite versions prior to 3.40.1
Description The issue is caused by a buffer overflow in the /sqlite3 aflpp/shell.c component of the SQLite database management system. This can be exploited by a remote attacker to cause a denial of service.
Recommendations For versions prior to 3.40.1, update to version 3.40.1 or later to address the issue with improved checks.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2023-1341
BDU:2023-03921
CVE-2023-36191
OESA-2023-1484
OESA-2023-1485
OESA-2023-1486

Affected Products

Apple Macos
Sqlite