CVE-2019-8457

Priority
Description
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap
out-of-bound read in the rtreenode() function when handling invalid rtree
tables.
Assigned-to
leosilva
Notes
leosilvadb5.3 has a sqlite into /lang/sql/sqlite
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 20.04 LTS (Focal Fossa):DNE
Ubuntu 20.10 (Groovy Gorilla):DNE
Ubuntu 21.04 (Hirsute Hippo):DNE
Ubuntu 21.10 (Impish Indri):DNE
Package
Source: db5.3 (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):released (5.3.28-3ubuntu3.1+esm1)
Ubuntu 16.06 ESM (Xenial Xerus):released (5.3.28-11ubuntu0.2)
Ubuntu 18.04 LTS (Bionic Beaver):released (5.3.28-13.1ubuntu1.1)
Ubuntu 20.04 LTS (Focal Fossa):released (5.3.28+dfsg1-0.6ubuntu1)
Ubuntu 20.10 (Groovy Gorilla):released (5.3.28+dfsg1-0.6ubuntu1)
Ubuntu 21.04 (Hirsute Hippo):released (5.3.28+dfsg1-0.6ubuntu1)
Ubuntu 21.10 (Impish Indri):released (5.3.28+dfsg1-0.6ubuntu1)
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 18.04 LTS (Bionic Beaver):needs-triage
Ubuntu 20.04 LTS (Focal Fossa):needs-triage
Ubuntu 20.10 (Groovy Gorilla):needs-triage
Ubuntu 21.04 (Hirsute Hippo):needs-triage
Ubuntu 21.10 (Impish Indri):needs-triage
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 18.04 LTS (Bionic Beaver):needed
Ubuntu 20.04 LTS (Focal Fossa):needed
Ubuntu 20.10 (Groovy Gorilla):needed
Ubuntu 21.04 (Hirsute Hippo):needed
Ubuntu 21.10 (Impish Indri):needed
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):released (3.8.2-1ubuntu2.2+esm1)
Ubuntu 16.06 ESM (Xenial Xerus):released (3.11.0-1ubuntu1.2)
Ubuntu 18.04 LTS (Bionic Beaver):released (3.22.0-1ubuntu0.1)
Ubuntu 20.04 LTS (Focal Fossa):released (3.27.2-3)
Ubuntu 20.10 (Groovy Gorilla):released (3.27.2-3)
Ubuntu 21.04 (Hirsute Hippo):released (3.27.2-3)
Ubuntu 21.10 (Impish Indri):released (3.27.2-3)
More Information

Updated: 2021-06-05 04:21:17 UTC (commit 9f1442d151c4b1764735c64061fe3a60c369dce8)