ZeroHour

CVE-2020-13871

PoC ×2
CVSS 3.1
7.5 high
EPSS
4%p91
Published
()
Modified
Description

SQLite 3.32.2 has a use-after-free in resetAccumulator in select.c because the parse tree rewrite for window functions is too late.

Vendors
sqlitefedoraprojectdebianoraclesiemensnetapp
Products
sqlite, fedora, debian linux, communications messaging server, communications network charging and control, enterprise manager ops center, hyperion infrastructure technology, mysql workbench, zfs storage appliance kit, sinec infrastructure network services, cloud backup, ontap select deploy administration utility
Weakness
CWE-416
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.