CVE-2019-8457

Priority
Description
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap
out-of-bound read in the rtreenode() function when handling invalid rtree
tables.
Assigned-to
leosilva
Notes
leosilvadb5.3 has a sqlite into /lang/sql/sqlite
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan Ermine):DNE
Ubuntu 20.04 (Focal Fossa):DNE
Package
Source: db5.3 (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):released (5.3.28-3ubuntu3.1+esm1)
Ubuntu 16.04 LTS (Xenial Xerus):released (5.3.28-11ubuntu0.2)
Ubuntu 18.04 LTS (Bionic Beaver):released (5.3.28-13.1ubuntu1.1)
Ubuntu 19.04 (Disco Dingo):released (5.3.28+dfsg1-0.5ubuntu0.1)
Ubuntu 19.10 (Eoan Ermine):released (5.3.28+dfsg1-0.6ubuntu1)
Ubuntu 20.04 (Focal Fossa):released (5.3.28+dfsg1-0.6ubuntu1)
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):needs-triage
Ubuntu 19.04 (Disco Dingo):needs-triage
Ubuntu 19.10 (Eoan Ermine):needs-triage
Ubuntu 20.04 (Focal Fossa):needs-triage
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):needed
Ubuntu 18.04 LTS (Bionic Beaver):needed
Ubuntu 19.04 (Disco Dingo):needed
Ubuntu 19.10 (Eoan Ermine):needed
Ubuntu 20.04 (Focal Fossa):needed
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):released (3.7.9-2ubuntu1.3)
Ubuntu 14.04 ESM (Trusty Tahr):released (3.8.2-1ubuntu2.2+esm1)
Ubuntu 16.04 LTS (Xenial Xerus):released (3.11.0-1ubuntu1.2)
Ubuntu 18.04 LTS (Bionic Beaver):released (3.22.0-1ubuntu0.1)
Ubuntu 19.04 (Disco Dingo):released (3.27.2-2ubuntu0.1)
Ubuntu 19.10 (Eoan Ermine):released (3.27.2-3)
Ubuntu 20.04 (Focal Fossa):released (3.27.2-3)
More Information

Updated: 2019-12-05 20:09:42 UTC (commit 0aa5e7c87c8b55d2ec5c7f4ca1179cf75de91961)