ID:

CVE-2019-19926 (NVD)

- Vulnerability Info (edit)
2019-12-23

multiSelect in select.c in SQLite 3.30.1 mishandles certain errors during parsing, as demonstrated by errors from sqlite3WindowRewrite() calls. NOTE: this vulnerability exists because of an incomplete fix for CVE-2019-19880.

Products Sqlite
Type NULL Pointer Dereference (CWE-476)
First patch - None (likely due to unavailable code)
Patches https://github.com/sqlite/sqlite/commit/8428b3b437569338a9d1e10c4cd8154acbe33089
Links https://security.netapp.com/advisory/ntap-20200114-0003/
Annotation

Note:

No patch was assigned yet.