CVE-2026-51936
- EPSS 0.18%
- Veröffentlicht 30.09.2026 00:19:30
- Zuletzt bearbeitet 02.10.2026 13:17:50
Zetetic SQLCipher before 4.15.0 allows SQL injection. The sqlcipher_export convenience function can be used to copy the contents of one attached database into another. It is most often used to convert between plaintext and encrypted databases. It nee...
CVE-2021-3119
- EPSS 1.56%
- Veröffentlicht 25.03.2021 23:15:13
- Zuletzt bearbeitet 21.11.2024 06:20:55
Zetetic SQLCipher 4.x before 4.4.3 has a NULL pointer dereferencing issue related to sqlcipher_export in crypto.c and sqlite3StrICmp in sqlite3.c. This may allow an attacker to perform a remote denial of service attack. For example, an SQL injection ...
CVE-2020-27207
- EPSS 1.57%
- Veröffentlicht 26.11.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 05:20:51
Zetetic SQLCipher 4.x before 4.4.1 has a use-after-free, related to sqlcipher_codec_pragma and sqlite3Strlen30 in sqlite3.c. A remote denial of service attack can be performed. For example, a SQL injection can be used to execute the crafted SQL comma...