CVE-2025-7458
published 2025-07-29CVE-2025-7458: An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute…
PriorityP348critical9.1CVSS 3.1
AVNACLPRNUINSUCHINAH
EPSS
0.23%
13.8th percentile
An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | sqlite3 | < sqlite3 3.42.0-1 (forky) | sqlite3 3.42.0-1 (forky) |
| ghost | sqlite3 | >= 0 < 3.42.0-1 | 3.42.0-1 |
| ghost | sqlite3 | >= 0 < 3.42.0-1 | 3.42.0-1 |
| msrc | cbl2_sqlite_3.39.2-3_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_sqlite_3.39.2-4_on_cbl_mariner_2.0 | — | — |
| sqlite | sqlite | >= 3.39.2 < 3.41.2 | 3.41.2 |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
nvdv4.06.9MEDIUMCVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv6.9MEDIUM
vendor_msrc9.1CRITICAL
vendor_debian6.9MEDIUM
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2025-7458: An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3
osv·2025-07-29·CVSS 6.9
CVE-2025-7458 [MEDIUM] CVE-2025-7458: An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3
An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.
GHSA
GHSA-h2g7-95mc-8g48: An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3
ghsa_unreviewed·2025-07-29
CVE-2025-7458 [MEDIUM] CWE-190 GHSA-h2g7-95mc-8g48: An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3
An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.
Red Hat
sqlite: SQLite integer overflow
vendor_redhat·2025-07-29·CVSS 6.9
CVE-2025-7458 [MEDIUM] CWE-190 sqlite: SQLite integer overflow
sqlite: SQLite integer overflow
An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.
An integer overflow flaw has been discovered in SQLite. This flaw allows an attacker who has the ability to execute raw SQL statements to induce a denial of service or leak process memory.
Mitigation: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation
Microsoft
SQLite integer overflow in key info allocation may lead to information disclosure.
vendor_msrc·2025-07-08·CVSS 9.1
CVE-2025-7458 [MEDIUM] CWE-190 SQLite integer overflow in key info allocation may lead to information disclosure.
SQLite integer overflow in key info allocation may lead to information disclosure.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
Google: Google
Customer Action Required: Yes
Remediation: CBL-Mariner Relea
Debian
CVE-2025-7458: sqlite3 - An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite version...
vendor_debian·2025·CVSS 6.9
CVE-2025-7458 [MEDIUM] CVE-2025-7458: sqlite3 - An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite version...
An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.
Scope: local
bookworm: open
bullseye: resolved
forky: resolved (fixed in 3.42.0-1)
sid: resolved (fixed in 3.42.0-1)
trixie: resolved (fixed in 3.42.0-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2025-7458 mingw-sqlite: SQLite integer overflow [fedora-42]
bugzilla·2025-07-29·CVSS 6.9
CVE-2025-7458 [MEDIUM] CVE-2025-7458 mingw-sqlite: SQLite integer overflow [fedora-42]
CVE-2025-7458 mingw-sqlite: SQLite integer overflow [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to close all bug reports from releases th
Bugzilla
CVE-2025-7458 sqlite: SQLite integer overflow
bugzilla·2025-07-29·CVSS 6.9
CVE-2025-7458 [MEDIUM] CVE-2025-7458 sqlite: SQLite integer overflow
CVE-2025-7458 sqlite: SQLite integer overflow
An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.
Bugzilla
CVE-2025-7458 qt5-qtwebengine: SQLite integer overflow [fedora-42]
bugzilla·2025-07-29·CVSS 6.9
CVE-2025-7458 [MEDIUM] CVE-2025-7458 qt5-qtwebengine: SQLite integer overflow [fedora-42]
CVE-2025-7458 qt5-qtwebengine: SQLite integer overflow [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to close all bug reports from releases
Bugzilla
CVE-2025-7458 tdlib: SQLite integer overflow [fedora-42]
bugzilla·2025-07-29·CVSS 6.9
CVE-2025-7458 [MEDIUM] CVE-2025-7458 tdlib: SQLite integer overflow [fedora-42]
CVE-2025-7458 tdlib: SQLite integer overflow [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to close all bug reports from releases that are
Wiz
CVE-2025-70873 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.6
CVE-2025-70873 [MEDIUM] CVE-2025-70873 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-70873 :
SQLite vulnerability analysis and mitigation
An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.
Source : NVD
## 7.5
Score
Published March 12, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
SQLite
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 11.4
Exploitation Probability (EPSS) N/A
Affected packages and libraries
nodejs:24::npm
sqlite-libs
Sources
NVD
Debian 11, 12, 13, 14 Severity LOW No Fix Added at: Mar 17, 2026
Echo Severity HIGH Has Fix Added at: Mar 17, 2026
Red Hat 6, 7, 8, 9, 10 Severity
2025-07-29
Published