Debian Db5.3 vulnerabilities
2 known vulnerabilities affecting debian/db5.3.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2019-8457CRITICALCVSS 9.8fixed in db5.3 5.3.28+dfsg1-0.9 (bookworm)2019
CVE-2019-8457 [CRITICAL] CVE-2019-8457: db5.3 - SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound re...
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
Scope: local
bookworm: resolved (fixed in 5.3.28+dfsg1-0.9)
bullseye: open
forky: resolved (fixed in 5.3.28+dfsg1-0.9)
sid: resolved (fixed in 5.3.28+dfsg1-0.9)
trixie: resolved (fixed in 5.3.28+dfsg1-0.9)
debian
CVE-2017-10140HIGHCVSS 7.8fixed in db5.3 5.3.28-13.1 (bookworm)2017
CVE-2017-10140 [HIGH] CVE-2017-10140: db5.3 - Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x befor...
Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 might allow local users to gain privileges by leveraging undocumented functionality in Berkeley DB 2.x and later, related to reading settings from DB_CONFIG in the current directory.
Scope: local
bookworm: resolved (fixed in 5.3.28-13.1)
bullseye: resolved (fixed in 5.3.28-13.1)
fo
debian