Description
An exploitable use after free vulnerability exists in the window function functionality of Sqlite3 3.26.0. A specially crafted SQL command can cause a use after free vulnerability, potentially resulting in remote code execution. An attacker can send a malicious SQL command to trigger this vulnerability.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2017-10282 Vulnerability (CVE-2017-10282)
Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-9514)
MySQL CVE-2012-3158 Vulnerability (CVE-2012-3158)
Oracle Database Server CVE-2014-6541 Vulnerability (CVE-2014-6541)
WordPress Plugin Login with Cognito Cross-Site Scripting (1.4.3)