CVE-2020-35527: Buffer Overflow
In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-35527?
The severity of CVE-2020-35527 is critical, with a severity value of 9.8.
What is the affected software for CVE-2020-35527?
The affected software includes SQLite 3.31.1 and NetApp ONTAP Select Deploy administration utility.
What is the vulnerability description of CVE-2020-35527?
CVE-2020-35527 is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause in SQLite 3.31.1.
Are there any references for CVE-2020-35527?
Yes, you can find references for CVE-2020-35527 at the following URLs: https://security.netapp.com/advisory/ntap-20221111-0007/ and https://www.sqlite.org/src/info/c431b3fd8fd0f6a6.
What is the Common Weakness Enumeration (CWE) of CVE-2020-35527?
The CWE of CVE-2020-35527 is CWE-89 (Improper Neutralization of Special Elements used in an SQL Command) and CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer).