CVE-2019-16168
09.09.2019, 17:15
In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field, aka a "severe division by zero in the query planner."Enginsight
| Vendor | Product | Version |
|---|---|---|
| sqlite | sqlite | 3.8.5 ≤ 𝑥 ≤ 3.29.0 |
| netapp | active_iq_unified_manager | 7.3 ≤ |
| netapp | active_iq_unified_manager | 9.5 ≤ |
| netapp | e-series_santricity_os_controller | 11.0.0 ≤ 𝑥 ≤ 11.60.3 |
| netapp | oncommand_insight | - |
| netapp | oncommand_workflow_automation | - |
| netapp | ontap_select_deploy_administration_utility | - |
| netapp | santricity_unified_manager | - |
| netapp | steelstore_cloud_integrated_storage | - |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.04 |
| canonical | ubuntu_linux | 19.10 |
| debian | debian_linux | 9.0 |
| tenable | nessus_agent | 𝑥 ≤ 8.2.3 |
| oracle | communications_design_studio | 7.3.4.3.0 |
| oracle | communications_design_studio | 7.3.5.5.0 |
| oracle | communications_design_studio | 7.4.0.4.0 |
| oracle | jdk | 1.8.0 |
| oracle | jre | 1.8.0 |
| oracle | mysql | 8.0.0 ≤ 𝑥 ≤ 8.0.18 |
| oracle | outside_in_technology | 8.5.4 |
| oracle | zfs_storage_appliance | 8.8 |
| mcafee | policy_auditor | 𝑥 < 6.5.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References