Candidate: CVE-2019-19646 PublicDate: 2019-12-09 19:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19646 Description: pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated columns. Ubuntu-Description: Notes: mdeslaur> generated column support was added in 3.31.0. Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_sqlite: upstream_sqlite: needs-triage precise/esm_sqlite: DNE trusty_sqlite: ignored (out of standard support) trusty/esm_sqlite: not-affected (code not present) xenial_sqlite: not-affected (code not present) bionic_sqlite: not-affected (code not present) disco_sqlite: not-affected (code not present) eoan_sqlite: not-affected (code not present) devel_sqlite: not-affected (code not present) Patches_sqlite3: upstream: https://github.com/sqlite/sqlite/commit/926f796e8feec15f3836aa0a060ed906f8ae04d3 upstream: https://github.com/sqlite/sqlite/commit/ebd70eedd5d6e6a890a670b5ee874a5eae86b4dd upstream_sqlite3: needs-triage precise/esm_sqlite3: not-affected (code not present) trusty_sqlite3: ignored (out of standard support) trusty/esm_sqlite3: not-affected (code not present) xenial_sqlite3: not-affected (code not present) esm-infra/xenial_sqlite3: not-affected (code not present) bionic_sqlite3: not-affected (code not present) disco_sqlite3: ignored (reached end-of-life) eoan_sqlite3: not-affected (code not present) devel_sqlite3: not-affected (3.31.1-1ubuntu1)