The vendor explicitly identifies these products or versions as containing the fix.
- lemon-debuginfo-0:3.46.1-4.el10_0.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 10)
- lemon-debuginfo-0:3.46.1-4.el10_0.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 10)
- lemon-debuginfo-0:3.46.1-4.el10_0.s390x as a component of Red Hat Enterprise Linux AppStream (v. 10)
- lemon-debuginfo-0:3.46.1-4.el10_0.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-0:3.46.1-4.el10_0.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-0:3.46.1-4.el10_0.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-0:3.46.1-4.el10_0.s390x as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-0:3.46.1-4.el10_0.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-analyzer-debuginfo-0:3.46.1-4.el10_0.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-analyzer-debuginfo-0:3.46.1-4.el10_0.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-analyzer-debuginfo-0:3.46.1-4.el10_0.s390x as a component of Red Hat Enterprise Linux AppStream (v. 10)
- sqlite-analyzer-debuginfo-0:3.46.1-4.el10_0.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 10)
- Summary
- A flaw was found in SQLite’s `concat_ws()` function, where an integer overflow can be triggered. The resulting truncated integer can allocate a buffer. When SQLite writes the resulting string to the buffer, it uses the original, untruncated size, and a wild heap buffer overflow size of around 4GB can occur. This issue can result in arbitrary code execution.
- Remediation
- For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258
