VDB
GSD-2018-20346
GSD-2018-20346
PUBLISHED
SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and resultant buffer overflow) for FTS3 queries that occur after crafted changes to FTS3 shadow tables, allowing remote attackers to execute arbitrary code by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases), aka Magellan.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
Timeline
- Apr 3, 2009 CVE Published
- Jan 28, 2019 PoC Published
- Mar 31, 2026 Security Advisory
- Mar 31, 2026 Security Advisory
- Mar 31, 2026 Security Advisory
References
- https://worthdoingbadly.com/sqlitebug/ url
- https://github.com/zhuowei/worthdoingbadly.com/blob/master/_posts/2018-12-14-sqlitebug.html url
- https://news.ycombinator.com/item?id=18685296 url
- https://chromium.googlesource.com/chromium/src/+/c368e30ae55600a1c3c9cb1710a54f9c55de786e url
- 106323 vdb
- https://crbug.com/900910 url
- https://www.sqlite.org/releaselog/3_25_3.html url
- openSUSE-SU-2019:1159 vendor-advisory
- openSUSE-SU-2019:1222 vendor-advisory
- https://www.oracle.com/security-alerts/cpuapr2020.html url
- https://kc.mcafee.com/corporate/index?page=content&id=SB10365 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1659379 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1659677 url
- https://www.synology.com/security/advisory/Synology_SA_18_61 url
- https://blade.tencent.com/magellan/index_en.html url
- https://sqlite.org/src/info/940f2adc8541a838 url
- https://www.mail-archive.com/sqlite-users%40mailinglists.sqlite.org/msg113218.html url
- https://sqlite.org/src/info/d44318f59044162e url
- FreeBSD-EN-19:03 vendor-advisory
- https://chromereleases.googleblog.com/2018/12/stable-channel-update-for-desktop.html url
…and 13 more