[CLSA-2022:1665073456] Fixed CVEs in sqlite: CVE-2020-35525, CVE-2021-20223
Type:
security
Severity:
Critical
Release date:
2022-10-06
Description:
- CVE-2021-20223: prevent fts5 tokenizer unicode61 from considering '\0' to be a token characters, even if other characters of class "Cc" are. - CVE-2020-35525: fix a potential null pointer dereference.
Updated packages:
  • sqlite-devel-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:12033aa4fe4b0fc039b8460f7b6fefd3b76d3ea6
  • sqlite-libs-3.26.0-15.el8.tuxcare.els1.i686.rpm
    sha:0bd2bab2dff187123ca62ee1775a8b6bbc379988
  • sqlite-tcl-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:be5cc172d73a7bcce98e7d5a9228faf4774bc2af
  • sqlite-libs-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:1535c8b7729b3685e948044c5ee26cdb87b46f4f
  • sqlite-devel-3.26.0-15.el8.tuxcare.els1.i686.rpm
    sha:7e5bf41888d51167542653a83395ccb197d1272d
  • sqlite-doc-3.26.0-15.el8.tuxcare.els1.noarch.rpm
    sha:d95b5901841b629cc21564ea79f19c9e675f2ce0
  • sqlite-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:fc46770a000dcd30dc80130ce0cf4b4d64adf3fd
  • sqlite-analyzer-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:57abdfd89082a12fa347661d8286928fcf1f66d7
  • sqlite-3.26.0-15.el8.tuxcare.els1.i686.rpm
    sha:3d238bb3992f97b2436244bbeda9bd7347a9898f
  • lemon-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:81b6259e9b4060086e871cff1dc0053b7d0ed303
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.