VDB
GCVE-110-MAGEIA-2026-305
GCVE-110-MAGEIA-2026-305
Advisory Published
CVE-2026-50812:
A NULL pointer dereference in the SQLite Session Extension in SQLite
3.53.1 and SQLite trunk builds before check-in e807d4e3798efd53 allows
an attacker who can supply a malformed changeset blob to cause a denial
of service. The issue occurs when sqlite3changeset_apply_v3() applies a
corrupt changeset and reaches sqlite3_value_type() with a NULL
sqlite3_value pointer.
CVE-2026-50813:
An issue in SQLite before Fossil check-in 869a51ae84df allows a local
attacker to obtain sensitive information via the Session Extension
changeset concat/changegroup merge path.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | sqlite3 | 0 (affected), 3.40.1-1.10.mga9 (unaffected) | — |
| Mageia | sqlite3 | 0 (affected), 3.51.3-1.2.mga10 (unaffected) | — |
Browse GCVE Records
69,369 records in the GCVE database · Updated August 25, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.