CVE-2017-10989
07.07.2017, 12:29
The getNodeSize function in ext/rtree/rtree.c in SQLite through 3.19.3, as used in GDAL and other products, mishandles undersized RTree blobs in a crafted database, leading to a heap-based buffer over-read or possibly unspecified other impact.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sqlite | sqlite | 𝑥 ≤ 3.19.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| libsqlite3-0 |
| ||||||||||
| libsqlite3-0-32bit |
| ||||||||||
| sqlite3 |
| ||||||||||
| sqlite3-devel |
|
Common Weakness Enumeration
References