CVE-2020-13630
CVE-2020-13630
ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://bugs.chromium.org/p/chromium/issues/detail?id=1080459https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdfhttp://seclists.org/fulldisclosure/2020/Dec/32http://seclists.org/fulldisclosure/2020/Nov/19http://seclists.org/fulldisclosure/2020/Nov/20http://seclists.org/fulldisclosure/2020/Nov/22https://lists.debian.org/debian-lts-announce/2020/08/msg00037.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L7KXQWHIY2MQP4LNM6ODWJENMXYYQYBN/https://security.FreeBSD.org/advisories/FreeBSD-SA-20:22.sqlite.aschttps://security.gentoo.org/glsa/202007-26https://security.netapp.com/advisory/ntap-20200608-0002/https://sqlite.org/src/info/0d69f76f0865f962