Description
An exploitable use after free vulnerability exists in the window function functionality of Sqlite3 3.26.0. A specially crafted SQL command can cause a use after free vulnerability, potentially resulting in remote code execution. An attacker can send a malicious SQL command to trigger this vulnerability.
Remediation
References
Related Vulnerabilities
ZenCart Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-0697)
WordPress Plugin WP Content Copy Protection & No Right Click Cross-Site Request Forgery (3.1.5)
LiteSpeed Web Server Out-of-bounds Read Vulnerability (CVE-2004-0112)
Apache HTTP Server Uncontrolled Resource Consumption Vulnerability (CVE-2018-17189)