~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to active/CVE-2018-8740

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2018-8740
2
 
PublicDate: 2018-03-16
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8740
5
 
 https://www.sqlite.org/cgi/src/timeline?r=corrupt-schema
6
 
Description:
7
 
 In SQLite through 3.22.0, databases whose schema is corrupted using a
8
 
 CREATE TABLE AS statement could cause a NULL pointer dereference, related
9
 
 to build.c and prepare.c.
10
 
Ubuntu-Description:
11
 
Notes:
12
 
Bugs:
13
 
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=893195
14
 
 https://bugs.launchpad.net/ubuntu/+source/sqlite3/+bug/1756349
15
 
 https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=6964
16
 
Priority: low
17
 
Discovered-by:
18
 
Assigned-to:
19
 
 
20
 
 
21
 
Patches_sqlite3:
22
 
 upstream: https://www.sqlite.org/cgi/src/vdiff?from=1774f1c3baf0bc3d&to=d75e67654aa9620b
23
 
upstream_sqlite3: released (3.22.0-2)
24
 
precise/esm_sqlite3: needed
25
 
trusty_sqlite3: needed
26
 
xenial_sqlite3: needed
27
 
artful_sqlite3: needed
28
 
bionic_sqlite3: not-affected (3.22.0-1)
29
 
devel_sqlite3: not-affected (3.22.0-1)