CVE-2020-11655
09.04.2020, 03:15
SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sqlite | sqlite | 𝑥 ≤ 3.31.1 |
| netapp | ontap_select_deploy_administration_utility | - |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.10 |
| canonical | ubuntu_linux | 20.04 |
| oracle | communications_element_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
| oracle | communications_network_charging_and_control | 12.0.0 ≤ 𝑥 ≤ 12.0.3 |
| oracle | communications_network_charging_and_control | 6.0.1 |
| oracle | communications_network_charging_and_control | 12.0.2 |
| oracle | communications_session_report_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
| oracle | communications_session_route_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
| oracle | enterprise_manager_ops_center | 12.4.0.0 |
| oracle | hyperion_infrastructure_technology | 11.1.2.4 |
| oracle | instantis_enterprisetrack | 17.1 |
| oracle | instantis_enterprisetrack | 17.2 |
| oracle | instantis_enterprisetrack | 17.3 |
| oracle | mysql | 8.0.0 ≤ 𝑥 ≤ 8.0.22 |
| oracle | mysql_workbench | 𝑥 ≤ 8.0.22 |
| oracle | outside_in_technology | 8.5.4 |
| oracle | outside_in_technology | 8.5.5 |
| oracle | zfs_storage_appliance_kit | 8.8 |
| oracle | communications_messaging_server | 8.1 |
| siemens | sinec_infrastructure_network_services | 𝑥 < 1.0.1.1 |
| tenable | tenable.sc | 𝑥 < 5.19.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| sqlite |
| ||||||||||||||||||||||||||
| sqlite3 |
|
Common Weakness Enumeration
References