CVE-2020-15358
27.06.2020, 12:15
In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sqlite | sqlite | 𝑥 < 3.32.3 |
| canonical | ubuntu_linux | 20.04 |
| apple | icloud | 𝑥 < 7.21 |
| apple | ipados | 𝑥 < 14.0 |
| apple | iphone_os | 𝑥 < 14.0 |
| apple | macos | 𝑥 < 11.0.1 |
| apple | tvos | 𝑥 < 14.0 |
| apple | watchos | 𝑥 < 7.0 |
| oracle | communications_cloud_native_core_policy | 1.14.0 |
| oracle | communications_messaging_server | 8.1 |
| oracle | communications_network_charging_and_control | 6.0.1 |
| oracle | communications_network_charging_and_control | 12.0.2 |
| oracle | enterprise_manager_ops_center | 12.4.0.0 |
| oracle | hyperion_infrastructure_technology | 11.1.2.4 |
| oracle | mysql | 𝑥 ≤ 8.0.22 |
| oracle | outside_in_technology | 8.5.4 |
| oracle | outside_in_technology | 8.5.5 |
| siemens | sinec_infrastructure_network_services | 𝑥 < 1.0.1.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References