ZeroHour

CVE-2020-11655

PoC
CVSS 3.1
7.5 high
EPSS
4%p91
Published
()
Modified
Description

SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.

Vendors
sqlitenetappdebiancanonicaloraclesiemenstenable
Products
sqlite, ontap select deploy administration utility, debian linux, ubuntu linux, communications element manager, communications network charging and control, communications session report manager, communications session route manager, enterprise manager ops center, hyperion infrastructure technology, instantis enterprisetrack, mysql
Weakness
CWE-665
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.