CVE-2025-7709
published 2025-09-08CVE-2025-7709: An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and…
PriorityP430medium6.9CVSS 4.0
AVNACHATPPRLUIAVCNVIHVALSCNSIHSALEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.32%
24.3th percentile
An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and truncated into a 32-bit integer. A pointer to partially controlled data can then be written out of bounds.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | sqlite3 | < sqlite3 3.46.1-8 (forky) | sqlite3 3.46.1-8 (forky) |
| ghost | sqlite3 | >= 0 < 3.46.1-7+deb13u1 | 3.46.1-7+deb13u1 |
| ghost | sqlite3 | >= 0 < 3.46.1-8 | 3.46.1-8 |
| sqlite | fts5 | — | — |
CVSS provenance
nvdv4.06.9MEDIUMCVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:A/VC:N/VI:H/VA:L/SC:N/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv6.9MEDIUM
vendor_debian6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2025-7709: An integer overflow exists in the FTS5 https://sqlite
osv·2025-09-08·CVSS 6.9
CVE-2025-7709 [MEDIUM] CVE-2025-7709: An integer overflow exists in the FTS5 https://sqlite
An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and truncated into a 32-bit integer. A pointer to partially controlled data can then be written out of bounds.
Ubuntu
SQLite vulnerability
vendor_ubuntu·2025-09-15
CVE-2025-7709 SQLite vulnerability
Title: SQLite vulnerability
Summary: SQLite could be made to crash or run programs if it received specially
crafted input.
It was discovered that the FTS5 SQLite extension incorrectly calculated
certain array lengths. An attacker could use this issue to cause SQLite to
crash, resulting in a denial of service, or possibly execute arbitrary
code.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2025-7709: sqlite3 - An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension....
vendor_debian·2025·CVSS 6.9
CVE-2025-7709 [MEDIUM] CVE-2025-7709: sqlite3 - An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension....
An integer overflow exists in the FTS5 https://sqlite.org/fts5.html extension. It occurs when the size of an array of tombstone pointers is calculated and truncated into a 32-bit integer. A pointer to partially controlled data can then be written out of bounds.
Scope: local
bookworm: open
bullseye: resolved
forky: resolved (fixed in 3.46.1-8)
sid: resolved (fixed in 3.46.1-8)
trixie: resolved (fixed in 3.46.1-7+deb13u1)
No detection rules found.
No public exploits indexed.
2025-09-08
Published