Out-of-bounds read in SQLite - CVE-2020-6405
Published: February 5, 2020
Vulnerability identifier: #VU24958
CSH Severity: Medium
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-6405
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition in SQLite. A remote attacker can pass specially crafted input to the application, trigger out-of-bounds read error and read contents of memory on the system.
Affected software
SQLite
Arch Linux
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Fedora
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
SUSE Linux
Opensuse
Red Hat OpenShift Serverless
Quay
OpenShift Data Foundation (formerly OpenShift Container Storage)
sqlite (Red Hat package)
chromium (Debian package)
chromium
SUSE Package Hub for SUSE Linux Enterprise
Google Chrome
Arch Linux
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Fedora
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
SUSE Linux
Opensuse
Red Hat OpenShift Serverless
Quay
OpenShift Data Foundation (formerly OpenShift Container Storage)
sqlite (Red Hat package)
chromium (Debian package)
chromium
SUSE Package Hub for SUSE Linux Enterprise
Google Chrome
How to mitigate CVE-2020-6405
Install updates from vendor's website.
SQLite - update to 3.31.0
Red Hat OpenShift Serverless - addressed in versions 1.10.2, 1.11.0, 1.12.0
Quay - update to 3.3.3
sqlite (Red Hat package) - update to 3.26.0-11.el8
chromium (Debian package) - update to 80.0.3987.132-1~deb10u1
Google Chrome - update to 80.0.3987.87
chromium - addressed in versions 80.0.3987.132-1.el8, 80.0.3987.132-1.fc30, 80.0.3987.132-1.fc31, 80.0.3987.149-1.el8, 80.0.3987.149-1.fc30, 80.0.3987.162-1.el8, 80.0.3987.163-1.el8, 81.0.4044.113-1.el8, 81.0.4044.113-2.el8, 81.0.4044.122-1.el8, 81.0.4044.138-1.el8
Red Hat OpenShift Serverless - addressed in versions 1.10.2, 1.11.0, 1.12.0
Quay - update to 3.3.3
sqlite (Red Hat package) - update to 3.26.0-11.el8
chromium (Debian package) - update to 80.0.3987.132-1~deb10u1
Google Chrome - update to 80.0.3987.87
chromium - addressed in versions 80.0.3987.132-1.el8, 80.0.3987.132-1.fc30, 80.0.3987.132-1.fc31, 80.0.3987.149-1.el8, 80.0.3987.149-1.fc30, 80.0.3987.162-1.el8, 80.0.3987.163-1.el8, 81.0.4044.113-1.el8, 81.0.4044.113-2.el8, 81.0.4044.122-1.el8, 81.0.4044.138-1.el8
External References
Related Security Bulletins
- Multiple vulnerabilities in SQLite
- Multiple vulnerabilities in Google Chrome
- Arch Linux update for chromium
- OpenSUSE Linux update for chromium
- OpenSUSE Linux update for chromium
- Red Hat update for chromium-browser
- OpenSUSE Linux update for chromium, re2
- Debian update for chromium
- Red Hat Enterprise Linux 8 update for sqlite
- Multiple vulnerabilities in Red Hat Openshift Serverless
- Multiple vulnerabilities in Red Hat OpenShift Container Storage
- Multiple vulnerabilities in Red Hat Quay
- Multiple vulnerabilities in Red Hat OpenShift Serverless
- Multiple vulnerabilities in Red Hat OpenShift Serverless
- Fedora EPEL 8 update for chromium
- Fedora 31 update for chromium
- Fedora 30 update for chromium
- Fedora EPEL 8 update for chromium
- Fedora 30 update for chromium
- Fedora EPEL 8 update for chromium
- Fedora EPEL 8 update for chromium
- Fedora EPEL 8 update for chromium
- Fedora EPEL 8 update for chromium
- Fedora EPEL 8 update for chromium
- Fedora EPEL 8 update for chromium