Logo
vulnerabilityCVE-2025-29087
Name
CVE-2025-29087
Source
NVD ( link)Debian ( link)
Description
In SQLite 3.44.0 through 3.49.0 before 3.49.1, the concat_ws() SQL function can cause memory to be written beyond the end of a malloc-allocated buffer. If the separator argument is attacker-controlled and has a large string (e.g., 2MB or more), an integer overflow occurs in calculating the size of the result buffer, and thus malloc may not allocate enough memory.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
sqlite3
Patched

Vulnerability Ratings#


3.2
CVSSv31
7.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
3.38.5
Not Affected
yocto
master
3.53.2
Not Affected

Resolved with patches#


sqlite3 (yocto:scarthgap)

#
Title
Author
Resolve
1
Add a typecast to avoid 32-bit integer overflow in the
drh <>
CVE-2025-29087
CVE-2025-3277