CVE-2019-19959

ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.
Configurations

Configuration 1

cpe:2.3:a:sqlite:sqlite:3.30.1:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*

Information

Published : 2020-01-03 10:15

Updated : 2020-11-09 09:47


NVD link : CVE-2019-19959

Mitre link : CVE-2019-19959

Products Affected
No products.