CVE-2020-13871
PoC ×2—CVSS 3.1
7.5 high
EPSS
4%p91
Published
()
Modified
Description
SQLite 3.32.2 has a use-after-free in resetAccumulator in select.c because the parse tree rewrite for window functions is too late.
- Vendors
- sqlitefedoraprojectdebianoraclesiemensnetapp
- Products
- sqlite, fedora, debian linux, communications messaging server, communications network charging and control, enterprise manager ops center, hyperion infrastructure technology, mysql workbench, zfs storage appliance kit, sinec infrastructure network services, cloud backup, ontap select deploy administration utility
- Weakness
- CWE-416
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.