CVE-2020-13435

SQLite through 3.32.0 has a segmentation fault in sqlite3ExprCodeTarget in expr.c.
References
Link Resource
http://seclists.org/fulldisclosure/2020/Dec/32
http://seclists.org/fulldisclosure/2020/Nov/19
http://seclists.org/fulldisclosure/2020/Nov/20
http://seclists.org/fulldisclosure/2020/Nov/22
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/
https://security.FreeBSD.org/advisories/FreeBSD-SA-20:22.sqlite.asc
https://security.gentoo.org/glsa/202007-26
https://security.netapp.com/advisory/ntap-20200528-0004/ Third Party Advisory
https://support.apple.com/kb/HT211843
https://support.apple.com/kb/HT211844
https://support.apple.com/kb/HT211850
https://support.apple.com/kb/HT211931
https://support.apple.com/kb/HT211935
https://support.apple.com/kb/HT211952
https://usn.ubuntu.com/4394-1/
https://www.oracle.com/security-alerts/cpuApr2021.html
https://www.oracle.com/security-alerts/cpujul2020.html
https://www.sqlite.org/src/info/7a5279a25c57adf1 Exploit Patch Vendor Advisory
http://seclists.org/fulldisclosure/2020/Dec/32
http://seclists.org/fulldisclosure/2020/Nov/19
http://seclists.org/fulldisclosure/2020/Nov/20
http://seclists.org/fulldisclosure/2020/Nov/22
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/
https://security.FreeBSD.org/advisories/FreeBSD-SA-20:22.sqlite.asc
https://security.gentoo.org/glsa/202007-26
https://security.netapp.com/advisory/ntap-20200528-0004/ Third Party Advisory
https://support.apple.com/kb/HT211843
https://support.apple.com/kb/HT211844
https://support.apple.com/kb/HT211850
https://support.apple.com/kb/HT211931
https://support.apple.com/kb/HT211935
https://support.apple.com/kb/HT211952
https://usn.ubuntu.com/4394-1/
https://www.oracle.com/security-alerts/cpuApr2021.html
https://www.oracle.com/security-alerts/cpujul2020.html
https://www.sqlite.org/src/info/7a5279a25c57adf1 Exploit Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:sqlite:sqlite:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*

History

21 Nov 2024, 05:01

Type Values Removed Values Added
References () http://seclists.org/fulldisclosure/2020/Dec/32 - () http://seclists.org/fulldisclosure/2020/Dec/32 -
References () http://seclists.org/fulldisclosure/2020/Nov/19 - () http://seclists.org/fulldisclosure/2020/Nov/19 -
References () http://seclists.org/fulldisclosure/2020/Nov/20 - () http://seclists.org/fulldisclosure/2020/Nov/20 -
References () http://seclists.org/fulldisclosure/2020/Nov/22 - () http://seclists.org/fulldisclosure/2020/Nov/22 -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/ -
References () https://security.FreeBSD.org/advisories/FreeBSD-SA-20:22.sqlite.asc - () https://security.FreeBSD.org/advisories/FreeBSD-SA-20:22.sqlite.asc -
References () https://security.gentoo.org/glsa/202007-26 - () https://security.gentoo.org/glsa/202007-26 -
References () https://security.netapp.com/advisory/ntap-20200528-0004/ - Third Party Advisory () https://security.netapp.com/advisory/ntap-20200528-0004/ - Third Party Advisory
References () https://support.apple.com/kb/HT211843 - () https://support.apple.com/kb/HT211843 -
References () https://support.apple.com/kb/HT211844 - () https://support.apple.com/kb/HT211844 -
References () https://support.apple.com/kb/HT211850 - () https://support.apple.com/kb/HT211850 -
References () https://support.apple.com/kb/HT211931 - () https://support.apple.com/kb/HT211931 -
References () https://support.apple.com/kb/HT211935 - () https://support.apple.com/kb/HT211935 -
References () https://support.apple.com/kb/HT211952 - () https://support.apple.com/kb/HT211952 -
References () https://usn.ubuntu.com/4394-1/ - () https://usn.ubuntu.com/4394-1/ -
References () https://www.oracle.com/security-alerts/cpuApr2021.html - () https://www.oracle.com/security-alerts/cpuApr2021.html -
References () https://www.oracle.com/security-alerts/cpujul2020.html - () https://www.oracle.com/security-alerts/cpujul2020.html -
References () https://www.sqlite.org/src/info/7a5279a25c57adf1 - Exploit, Patch, Vendor Advisory () https://www.sqlite.org/src/info/7a5279a25c57adf1 - Exploit, Patch, Vendor Advisory

07 Nov 2023, 03:16

Type Values Removed Values Added
References
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/', 'name': 'FEDORA-2020-0477f8840e', 'tags': ['Third Party Advisory'], 'refsource': 'FEDORA'}
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/ -

Information

Published : 2020-05-24 22:15

Updated : 2024-11-21 05:01


NVD link : CVE-2020-13435

Mitre link : CVE-2020-13435

CVE.ORG link : CVE-2020-13435


JSON object : View

Products Affected

sqlite

  • sqlite

fedoraproject

  • fedora
CWE
CWE-476

NULL Pointer Dereference