PT-2026-48217 · Sqlite+3 · Sqlite+3
CVSS v4.0
8.5
High
| Vector | AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
SQLite versions prior to 3.53.2
Description
Memory corruption issues exist in the FTS5 full-text search extension. An attacker can cause process crashes, memory exhaustion, or arbitrary code execution by providing a crafted database containing malformed FTS5 page data. This is exploitable when an FTS5 MATCH query is executed against the malicious database. Technical details include an out-of-bounds read in the
fts5LeafSeek() function via an attacker-controlled loop bound, and a heap buffer overflow write in the fts5ChunkIterate() function caused by an integer underflow through a crafted continuation page.Recommendations
Update to version 3.53.2 or later.
Exploit
Fix
RCE
DoS
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linuxmint
Rocky Linux
Sqlite
Ubuntu