[CLSA-2022:1665073587] Fixed CVEs in sqlite: CVE-2020-35525, CVE-2021-20223
Type:
security
Severity:
Critical
Release date:
2022-10-06
Description:
- CVE-2021-20223: prevent fts5 tokenizer unicode61 from considering '\0' to be a token characters, even if other characters of class "Cc" are. - CVE-2020-35525: fix a potential null pointer dereference.
Updated packages:
  • sqlite-3.26.0-15.el8.tuxcare.els1.i686.rpm
    sha:b89cf3d8f9626af4819b0129bf16becb7ddfc0a6
  • sqlite-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:b824cf1ce364f5449a4b4f0fccd46b6a8654cd2b
  • sqlite-doc-3.26.0-15.el8.tuxcare.els1.noarch.rpm
    sha:2722fa61907ef316ef9a44666577eb2d2d07f367
  • sqlite-devel-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:b56070dc34d80c6bba9c8fd66722b59ab989ce41
  • sqlite-libs-3.26.0-15.el8.tuxcare.els1.i686.rpm
    sha:34ecd49862ac85c2f6b662737470421ad85aaff1
  • sqlite-devel-3.26.0-15.el8.tuxcare.els1.i686.rpm
    sha:67b674a2a3f9fbce3e568b454f488d042506ebe2
  • sqlite-tcl-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:83ac4ef9be322ba734228eb56913b33b381f2694
  • lemon-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:e9de04e8bfeb44c8ad1b69c5b6e8a052dcc674b2
  • sqlite-analyzer-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:8a847bd35b9a4e67346d8fbdfce711b1935d4a34
  • sqlite-libs-3.26.0-15.el8.tuxcare.els1.x86_64.rpm
    sha:0c1a381cca396ea648fa27eaebef2ef25f942339
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.