SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarget in expr.c.
References
Link | Resource |
---|---|
https://github.com/sqlite/sqlite/commit/57f7ece78410a8aae86aa4625fb7556897db384c | Patch Third Party Advisory |
https://usn.ubuntu.com/4205-1/ | Third Party Advisory |
https://www.oracle.com/security-alerts/cpuapr2020.html | Patch Third Party Advisory |
https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf | Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Information
Published : 2019-11-27 09:15
Updated : 2022-04-19 08:36
NVD link : CVE-2019-19242
Mitre link : CVE-2019-19242
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
redhat
- enterprise_linux
sqlite
- sqlite
siemens
- sinec_infrastructure_network_services
oracle
- mysql_workbench
canonical
- ubuntu_linux