REDHAT-BUG-2256194: Buffer Overflow
A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue affects the function sessionReadRecord of the file ext/session/sqlite3session.c of the component make alltest Handler. The manipulation leads to heap-based buffer overflow. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-248999.
https://sqlite.org/forum/forumpost/5bcbf4571c https://sqlite.org/src/info/0e4e7a05c4204b47 https://vuldb.com/?ctiid.248999 https://vuldb.com/?id.248999
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2256194?
The severity of REDHAT-BUG-2256194 is classified as critical.
What type of vulnerability is REDHAT-BUG-2256194?
REDHAT-BUG-2256194 is a heap-based buffer overflow vulnerability.
Which function is affected by REDHAT-BUG-2256194?
The function sessionReadRecord in the file ext/session/sqlite3session.c is affected by REDHAT-BUG-2256194.
What versions of SQLite are affected by REDHAT-BUG-2256194?
SQLite versions up to and including 3.43.0 are affected by REDHAT-BUG-2256194.
How do I fix REDHAT-BUG-2256194?
It is recommended to apply a patch or update SQLite to a version that is not affected by REDHAT-BUG-2256194.