GHSA-m2vp-56p6-9q2hMediumCVSS 6.5

In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other...

Published
May 24, 2022
Last Modified
May 28, 2026

🔗 CVE IDs covered (1)

📋 Description

In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field, aka a "severe division by zero in the query planner."

🔗 References (21)