Vulnerabilities > CVE-2015-5895 - Unspecified vulnerability in Sqlite
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple unspecified vulnerabilities in SQLite before 3.8.10.2, as used in Apple iOS before 9, have unknown impact and attack vectors.
Vulnerable Configurations
Exploit-Db
description | SQLite3 3.8.6 - Controlled Memory Corruption PoC. CVE-2015-5895. Dos exploit for linux platform |
id | EDB-ID:36190 |
last seen | 2016-02-04 |
modified | 2015-02-26 |
published | 2015-02-26 |
reporter | Andras Kabai |
source | https://www.exploit-db.com/download/36190/ |
title | SQLite3 3.8.6 - Controlled Memory Corruption PoC |
Nessus
NASL family | Misc. |
NASL id | NESSUS_SQLITE_MULTIPLE.NASL |
description | According to its self-reported version number, the version of Nessus running on the remote host is affected by multiple remote code execution vulnerabilities in the bundled version of SQLite due to heap-based buffer overflow conditions in the sqlite3VdbeExec() and resolve_backslashes() functions. A remote attacker can exploit these issues to cause a denial of service condition or the execution of arbitrary code. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 88964 |
published | 2016-02-25 |
reporter | This script is Copyright (C) 2016-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/88964 |
title | Nessus SQLite Multiple RCE |
code |
|
References
- http://lists.apple.com/archives/security-announce/2015/Sep/msg00001.html
- http://lists.apple.com/archives/security-announce/2015/Sep/msg00001.html
- http://www.securityfocus.com/bid/76764
- http://www.securityfocus.com/bid/76764
- http://www.securitytracker.com/id/1033609
- http://www.securitytracker.com/id/1033609
- https://support.apple.com/HT205212
- https://support.apple.com/HT205212