ZeroHour

CVE-2018-20505

PoC
CVSS 3.0
7.5 high
EPSS
7%p94
Published
()
Modified
Description

SQLite 3.25.2, when queries are run on a table with a malformed PRIMARY KEY, allows remote attackers to cause a denial of service (application crash) by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases).

Vendors
sqliteapple
Products
sqlite, iphone os, mac os x, watchos, icloud, itunes
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.