CVE-2019-19603

Severity
7.5HIGH
EPSS
0.6%
top 29.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 9
Latest updateMay 24

Description

SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages6 packages

Debiansqlite3< 3.30.1+fossil191229-1+3
Ubuntusqlite3< 3.11.0-1ubuntu1.5+2
NVDsqlite/sqlite3.30.1

Patches

🔴Vulnerability Details

4
GHSA
GHSA-cm5h-jfjm-77x3: SQLite 32022-05-24
OSV
sqlite3 vulnerabilities2020-06-10
CVEList
CVE-2019-19603: SQLite 32019-12-09
OSV
CVE-2019-19603: SQLite 32019-12-09

📋Vendor Advisories

3
Ubuntu
SQLite vulnerabilities2020-06-10
Red Hat
sqlite: mishandling of certain SELECT statements with non-existent VIEW can lead to DoS2019-12-09
Debian
CVE-2019-19603: sqlite3 - SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, lead...2019

💬Community

4
Bugzilla
CVE-2019-19603 mingw-sqlite: sqlite: mishandles certain SELECT statements with a nonexistent VIEW, leading to DoS [fedora-all]2019-12-19
Bugzilla
CVE-2019-19603 sqlite: mishandling of certain SELECT statements with non-existent VIEW can lead to DoS2019-12-19
Bugzilla
CVE-2019-19603 mingw-sqlite: sqlite: mishandles certain SELECT statements with a nonexistent VIEW, leading to DoS [epel-7]2019-12-19
Bugzilla
CVE-2019-19603 sqlite: mishandles certain SELECT statements with a nonexistent VIEW, leading to DoS [fedora-all]2019-12-19
CVE-2019-19603 (HIGH CVSS 7.5) | SQLite 3.30.1 mishandles certain SE | cvebase.io