Total vulnerabilities in the database
In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field, aka a "severe division by zero in the query planner."
Software | From | Fixed in |
---|---|---|
sqlite / sqlite | 3.8.5 | 3.29.0.x |
netapp / active_iq_unified_manager | 7.3 | 7.3.x |
netapp / active_iq_unified_manager | 9.5 | 9.5.x |
netapp / e-series_santricity_os_controller | 11.0.0 | 11.60.3.x |
canonical / ubuntu_linux | 16.04 | 16.04.x |
canonical / ubuntu_linux | 18.04 | 18.04.x |
canonical / ubuntu_linux | 19.04 | 19.04.x |
canonical / ubuntu_linux | 19.10 | 19.10.x |
canonical / ubuntu_linux | 12.04 | 12.04.x |
fedoraproject / fedora | 30 | 30.x |
debian / debian_linux | 9.0 | 9.0.x |
tenable / nessus_agent | - | 8.2.3.x |
oracle / solaris | 11 | 11.x |
oracle / outside_in_technology | 8.5.4 | 8.5.4.x |
oracle / mysql | 8.0.0 | 8.0.18.x |
oracle / jre | 1.8.0-update231 | 1.8.0-update231.x |
oracle / jdk | 1.8.0-update231 | 1.8.0-update231.x |
oracle / zfs_storage_appliance | 8.8 | 8.8.x |
oracle / communications_design_studio | 7.3.4.3.0 | 7.3.4.3.0.x |
oracle / communications_design_studio | 7.3.5.5.0 | 7.3.5.5.0.x |
oracle / communications_design_studio | 7.4.0.4.0 | 7.4.0.4.0.x |
mcafee / policy_auditor | - | 6.5.1 |