Wind River Support Network

HomeDefectsLIN1019-10780
Acknowledged

LIN1019-10780 : Security Advisory - sqlite3 - CVE-2024-0232

Created: Jan 14, 2024    Updated: Jan 26, 2024
Found In Version: 10.19.45.1
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Userspace

Description

A heap use-after-free issue has been identified in SQLite in the jsonParseAddNodeArray() function in sqlite3.c. This flaw allows a local attacker to leverage a victim to pass specially crafted malicious input to the application, potentially causing a crash and leading to a denial of service.

https://nvd.nist.gov/vuln/detail/CVE-2024-0232
Live chat
Online