CVE-2020-35525: Null Pointer Dereference
Published Sep 1, 2022
·Updated
In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing.
Affected Software
2 affected componentsFixes available
debian/sqlite3
3.34.1-33.40.1-23.46.0-13.46.1-1
SQLite SQLite=3.31.1
Remediation
Patch Available
Event History
Sep 1, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Jul 1, 2024
Data Sourced
via Launchpad·10:48 AM
Description
Sep 15, 2024
Data Sourced
via Ubuntu·11:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2020-35525?
CVE-2020-35525 is a vulnerability in SQlite 3.31.1 that allows for a potential null pointer dereference in the INTERSEC query processing.
2
How severe is CVE-2020-35525?
CVE-2020-35525 has a severity rating of 7.5 (high).
3
How does CVE-2020-35525 affect SQlite 3.31.1?
CVE-2020-35525 affects SQlite 3.31.1 by allowing a potential null pointer dereference in the INTERSEC query processing.
4
How do I fix CVE-2020-35525?
To fix CVE-2020-35525, you should update to a version of SQlite that is not affected by this vulnerability.
5
Where can I find more information about CVE-2020-35525?
More information about CVE-2020-35525 can be found at the following references: [NetApp Advisory](https://security.netapp.com/advisory/ntap-20230706-0007/) and [SQLite](https://www.sqlite.org/src/info/a67cf5b7d37d5b14).