cbcvebase.
CVE-2020-35525
published 2022-09-01

CVE-2020-35525: In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing.

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing.

Affected

11 ranges
VendorProductVersion rangeFixed in
debiansqlite3< sqlite3 3.32.0-1 (bookworm)sqlite3 3.32.0-1 (bookworm)
ghostsqlite3>= 0 < 3.32.0-13.32.0-1
ghostsqlite3>= 0 < 3.32.0-13.32.0-1
ghostsqlite3>= 0 < 3.32.0-13.32.0-1
ghostsqlite3>= 0 < 3.32.0-13.32.0-1
ghostsqlite3>= 0 < 3.22.0-1ubuntu0.63.22.0-1ubuntu0.6
ghostsqlite3>= 0 < 3.31.1-4ubuntu0.43.31.1-4ubuntu0.4
ghostsqlite3>= 0 < 3.8.2-1ubuntu2.2+esm43.8.2-1ubuntu2.2+esm4
ghostsqlite3>= 0 < 3.11.0-1ubuntu1.5+esm13.11.0-1ubuntu1.5+esm1
sqlitesqlite
sqlitesqlite

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH