Fiche vulnérabilité
CVE-2025-6965 : faille élevée sqlite sqlite (CVSS 7.7)
Description
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.
En bref
- Sévérité
- Élevée (CVSS 7.7)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:L
- Exploitation active
- Non signalée par la CISA
- Publication
- 15 juil. 2025
- Dernière mise à jour
- 26 juin 2026
Produits concernés
- sqlite sqlite
- apple ipados
- apple iphone os
- apple macos
- apple tvos
- apple visionos
- apple watchos
- siemens ruggedcom crossbow
- siemens sidis prime
Références
- Fiche CVE-2025-6965 sur le NVD (NIST)
- sqlite.org/src/info/5508b56fd24016c13981ec280ecdd833007c9…
- seclists.org/fulldisclosure/2025/Sep/49
- seclists.org/fulldisclosure/2025/Sep/53
- seclists.org/fulldisclosure/2025/Sep/56
- seclists.org/fulldisclosure/2025/Sep/57
- seclists.org/fulldisclosure/2025/Sep/58
- openwall.com/lists/oss-security/2025/09/06/1
- cert-portal.siemens.com/productcert/html/ssa-225816.html
- cert-portal.siemens.com/productcert/html/ssa-485750.html