Wind River Support Network

HomeDefectsLIN1019-3812
Fixed

LIN1019-3812 : Security Advisory - sqlite3 - CVE-2019-19880

Created: Dec 18, 2019    Updated: May 13, 2022
Resolved Date: Dec 31, 2019
Found In Version: 10.19.45.1
Fix Version: 10.19.45.3
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Userspace

Description

exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER BY clauses of window definitions are mishandled.

CREATE(Triage):(User=admin) CVE-2019-19880 (https://nvd.nist.gov/vuln/detail/CVE-2019-19880)

CVEs


Live chat
Online