All vulnerabilities

CVE-2022-35737

`libsqlite3-sys` via C SQLite CVE-2022-35737

Description

It was sometimes possible for SQLite versions >= 1.0.12, < 3.39.2 to allow an array-bounds overflow when large string were input into SQLite's printf function.

As libsqlite3-sys bundles SQLite, it is susceptible to the vulnerability. libsqlite3-sys was updated to bundle the patched version of SQLite here.

Patch Available

Fix available through Seal Security. 

No upgrade required, protect your application instantly.

Fix without upgrading
Score
Severity
Ecosystem
APT
Publish Date
August 3, 2022
Modified Date
December 5, 2023
Score Vector
Affected Versions