First published: Thu Sep 01 2022(Updated: )
In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/sqlite3 | 3.34.1-3 3.40.1-2 3.46.0-1 3.46.1-1 | |
SQLite | =3.31.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-35525 is a vulnerability in SQlite 3.31.1 that allows for a potential null pointer dereference in the INTERSEC query processing.
CVE-2020-35525 has a severity rating of 7.5 (high).
CVE-2020-35525 affects SQlite 3.31.1 by allowing a potential null pointer dereference in the INTERSEC query processing.
To fix CVE-2020-35525, you should update to a version of SQlite that is not affected by this vulnerability.
More information about CVE-2020-35525 can be found at the following references: [NetApp Advisory](https://security.netapp.com/advisory/ntap-20230706-0007/) and [SQLite](https://www.sqlite.org/src/info/a67cf5b7d37d5b14).