Denial of Service Vulnerability in SQLite Affected by Version 3.30.1
CVE-2019-19317
9.8CRITICAL
What is CVE-2019-19317?
A vulnerability in SQLite's lookupName function within resolve.c, specifically in version 3.30.1, leads to incomplete colUsed bitmask handling. This flaw may enable attackers to execute denial of service attacks by exploiting the oversight related to generated columns, potentially resulting in unspecified impacts on system functionality.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved