CVE-2020-11655
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.
Affected (27)
Products: Sqlite: Sqlite · Netapp: Ontap Select Deploy Administration Utility · Debian: Debian Linux · +4 more
Show all products
Sqlite: Sqlite · Netapp: Ontap Select Deploy Administration Utility · Debian: Debian Linux · Canonical: Ubuntu Linux · Oracle: Communications Element Manager, Communications Messaging Server, Communications Network Charging And Control, Communications Session Report Manager, Communications Session Route Manager, Enterprise Manager Ops Center, Hyperion Infrastructure Technology, Instantis Enterprisetrack, Mysql, Mysql Workbench, Outside In Technology, Zfs Storage Appliance Kit · Siemens: Sinec Infrastructure Network Services · Tenable: Tenable.sc
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 16.04 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| From 8.2.0 to 8.2.2 | |
| Version 8.1 | |
| From 12.0.0 to 12.0.3 | |
| From 8.2.0 to 8.2.2 | |
| From 8.2.0 to 8.2.2 | |
| Version 12.4.0.0 | |
| Version 11.1.2.4 | |
| Version 17.1 | |
| From 8.0.0 to 8.0.22 | |
| Up to 8.0.22 | |
| Version 8.5.4 | |
| Version 8.8 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1.1 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 5.19.0 |
References (28)
Source: cve@mitre.org
PatchThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Timeline
No history available yet.