Denial of Service Vulnerability in SQLite by SQLite Consortium
CVE-2025-29088
5.6MEDIUM
What is CVE-2025-29088?
A security weakness in SQLite v.3.49.0 allows attackers to exploit the SQLITE_DBCONFIG_LOOKASIDE feature, potentially causing denial of service conditions. This vulnerability could impact applications relying on SQLite for database operations, leading to service disruptions and instability.
Affected Version(s)
SQLite 3.49.0 < 3.49.1
References
CVSS V3.1
Score:
5.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved