sqlite: Division by zero in whereLoopAddBtreeIndex in sqlite3.c
Published Sep 9, 2019
6.5
MEDIUMCVSS 3.1
EPSS 4.25%
Description
In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field, aka a "severe division by zero in the query planner."
Affected products
No data.
Configuration 2
- ≥ 7.3
- ≥ 9.5
- ≥ 11.0.0 · ≤ 11.60.3
- n/a
- n/a
- n/a
- n/a
- n/a
Configuration 3
- 12.04
- 16.04
- 18.04
- 19.04
- 19.10
Configuration 4
- 30
Configuration 5
- 9.0
Configuration 6
- ≤ 8.2.3
Configuration 7
- 7.3.4.3.0
- 7.3.5.5.0
- 7.4.0.4.0
- 1.8.0
- 1.8.0
- ≥ 8.0.0 · ≤ 8.0.18
- 8.5.4
- 11
- 8.8
Configuration 8
- < 6.5.1
No data.
Red Hat Enterprise Linux 8
mingw-binutils-0:2.30-3.el8
Fixed · RHSA-2021:1968
Red Hat Enterprise Linux 8
mingw-bzip2-0:1.0.6-14.el8
Fixed · RHSA-2021:1968
Red Hat Enterprise Linux 8
mingw-filesystem-0:104-2.el8
Fixed · RHSA-2021:1968
Red Hat Enterprise Linux 8
mingw-sqlite-0:3.26.0.0-1.el8
Fixed · RHSA-2021:1968
Red Hat Enterprise Linux 8
sqlite-0:3.26.0-11.el8
Fixed · RHSA-2020:4442
Red Hat Enterprise Linux 8
sqlite-0:3.26.0-11.el8
Fixed · RHSA-2020:4442
Red Hat Enterprise Linux 5
sqlite
Not affected
Red Hat Enterprise Linux 6
sqlite
Not affected
Red Hat Enterprise Linux 7
sqlite
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | mingw-binutils-0:2.30-3.el8 | Fixed | RHSA-2021:1968 |
| Red Hat Enterprise Linux 8 | mingw-bzip2-0:1.0.6-14.el8 | Fixed | RHSA-2021:1968 |
| Red Hat Enterprise Linux 8 | mingw-filesystem-0:104-2.el8 | Fixed | RHSA-2021:1968 |
| Red Hat Enterprise Linux 8 | mingw-sqlite-0:3.26.0.0-1.el8 | Fixed | RHSA-2021:1968 |
| Red Hat Enterprise Linux 8 | sqlite-0:3.26.0-11.el8 | Fixed | RHSA-2020:4442 |
| Red Hat Enterprise Linux 8 | sqlite-0:3.26.0-11.el8 | Fixed | RHSA-2020:4442 |
| Red Hat Enterprise Linux 5 | sqlite | Not affected | n/a |
| Red Hat Enterprise Linux 6 | sqlite | Not affected | n/a |
| Red Hat Enterprise Linux 7 | sqlite | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The SQLite package as shipped with Red Hat Enterprise Linux 7 and previous versions are not affected by this flaw. The bug was introduced on sqlite-3.8.5 while Red Hat Enterprise Linux 7 and previous releases ships sqlite <= 3.7.17.
Red Hat mitigation
An user can mitigate the risk of this vulnerability by: 1) Avoid using ANALYZE command on queries; 2) Disabling the PRAGMA optimize for affected SQLite instances;
References (22)
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00032.html vendor-advisoryx_refsource_SUSEBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00033.html vendor-advisoryx_refsource_SUSEBroken Link
- https://access.redhat.com/security/cve/CVE-2019-16168 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1768986 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-6988 Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10365 x_refsource_CONFIRMThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/08/msg00037.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XZARJHJJDBHI7CE5PZEBXS5HKK6HXKW2/ vendor-advisoryx_refsource_FEDORA
- https://nvd.nist.gov/vuln/detail/CVE-2019-16168
- https://security.gentoo.org/glsa/202003-16 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://security.netapp.com/advisory/ntap-20190926-0003/ x_refsource_CONFIRMThird Party Advisory
- https://security.netapp.com/advisory/ntap-20200122-0003/ x_refsource_CONFIRMThird Party Advisory
- https://usn.ubuntu.com/4205-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2019-16168
- https://www.mail-archive.com/sqlite-users%40mailinglists.sqlite.org/msg116312.html x_refsource_MISC
- https://www.oracle.com/security-alerts/cpuapr2020.html x_refsource_MISCThird Party Advisory
- https://www.oracle.com/security-alerts/cpujan2020.html x_refsource_MISCThird Party Advisory
- https://www.sqlite.org/src/info/e4598ecbdd18bd82945f6029013296690e719a62 x_refsource_MISCVendor Advisory
- https://www.sqlite.org/src/timeline?c=98357d8c1263920b x_refsource_MISCPatchVendor Advisory
- https://www.tenable.com/security/tns-2021-08 x_refsource_CONFIRMThird Party Advisory
- https://www.tenable.com/security/tns-2021-11 x_refsource_CONFIRMThird Party Advisory
- https://www.tenable.com/security/tns-2021-14 x_refsource_CONFIRMThird Party Advisory
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data