ZeroHour

CVE-2020-11656

CVSS 3.1
9.8 critical
EPSS
8%p94
Published
()
Modified
Description

In SQLite through 3.31.1, the ALTER TABLE implementation has a use-after-free, as demonstrated by an ORDER BY clause that belongs to a compound SELECT statement.

Vendors
sqlitenetapporaclesiemenstenable
Products
sqlite, ontap select deploy administration utility, communications network charging and control, enterprise manager ops center, hyperion infrastructure technology, mysql, mysql workbench, outside in technology, zfs storage appliance kit, communications messaging server, sinec infrastructure network services, tenable.sc
Weakness
CWE-416
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.