First published: Wed Jan 08 2020(Updated: )
zipfileUpdate in ext/misc/zipfile.c in SQLite 3.30.1 mishandles a NULL pathname during an update of a ZIP archive. Upstream Fix: <a href="https://github.com/sqlite/sqlite/commit/54d501092d88c0cf89bec4279951f548fb0b8618">https://github.com/sqlite/sqlite/commit/54d501092d88c0cf89bec4279951f548fb0b8618</a>
Affected Software | Affected Version | How to fix |
---|---|---|
SQLite JDBC |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1788866 is classified as a potential risk due to mishandling a NULL pathname in SQLite.
To fix REDHAT-BUG-1788866, upgrade to the latest version of SQLite where the NULL pathname issue has been addressed.
REDHAT-BUG-1788866 affects SQLite version 3.30.1.
REDHAT-BUG-1788866 is a vulnerability related to mishandling ZIP archive updates in the SQLite library.
Yes, a patch has been implemented in the latest version of SQLite to resolve the issues described in REDHAT-BUG-1788866.