OESA-2022-1909

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2022-1909
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2022-1909.json
JSON Data
https://api.osv.dev/v1/vulns/OESA-2022-1909
Upstream
Published
2022-09-09T11:04:16Z
Modified
2025-09-03T06:18:21.211232Z
Summary
sqlite security update
Details

SQLite is a C-language library that implements a small, fast, self-contained,high-reliability, full-featured, SQL database engine. SQLite is the most used database engine in the world. SQLite is built into all mobile phones and most computers and comes bundled inside countless other applications that people use every day.It also include lemon and sqlite3_analyzer and tcl tools.

Security Fix(es):

SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to a C API.(CVE-2022-35737)

Database specific
{
    "severity": "High"
}
References

Affected packages

openEuler:20.03-LTS-SP1 / sqlite

Package

Name
sqlite
Purl
pkg:rpm/openEuler/sqlite&distro=openEuler-20.03-LTS-SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.32.3-6.oe1

Ecosystem specific

{
    "noarch": [
        "sqlite-help-3.32.3-6.oe1.noarch.rpm"
    ],
    "x86_64": [
        "sqlite-debuginfo-3.32.3-6.oe1.x86_64.rpm",
        "sqlite-devel-3.32.3-6.oe1.x86_64.rpm",
        "sqlite-3.32.3-6.oe1.x86_64.rpm",
        "sqlite-debugsource-3.32.3-6.oe1.x86_64.rpm"
    ],
    "src": [
        "sqlite-3.32.3-6.oe1.src.rpm"
    ],
    "aarch64": [
        "sqlite-devel-3.32.3-6.oe1.aarch64.rpm",
        "sqlite-3.32.3-6.oe1.aarch64.rpm",
        "sqlite-debugsource-3.32.3-6.oe1.aarch64.rpm",
        "sqlite-debuginfo-3.32.3-6.oe1.aarch64.rpm"
    ]
}

openEuler:20.03-LTS-SP3 / sqlite

Package

Name
sqlite
Purl
pkg:rpm/openEuler/sqlite&distro=openEuler-20.03-LTS-SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.32.3-6.oe1

Ecosystem specific

{
    "noarch": [
        "sqlite-help-3.32.3-6.oe1.noarch.rpm"
    ],
    "x86_64": [
        "sqlite-debuginfo-3.32.3-6.oe1.x86_64.rpm",
        "sqlite-devel-3.32.3-6.oe1.x86_64.rpm",
        "sqlite-3.32.3-6.oe1.x86_64.rpm",
        "sqlite-debugsource-3.32.3-6.oe1.x86_64.rpm"
    ],
    "src": [
        "sqlite-3.32.3-6.oe1.src.rpm"
    ],
    "aarch64": [
        "sqlite-debuginfo-3.32.3-6.oe1.aarch64.rpm",
        "sqlite-devel-3.32.3-6.oe1.aarch64.rpm",
        "sqlite-debugsource-3.32.3-6.oe1.aarch64.rpm",
        "sqlite-3.32.3-6.oe1.aarch64.rpm"
    ]
}

openEuler:22.03-LTS / sqlite

Package

Name
sqlite
Purl
pkg:rpm/openEuler/sqlite&distro=openEuler-22.03-LTS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.37.2-2.oe2203

Ecosystem specific

{
    "noarch": [
        "sqlite-help-3.37.2-2.oe2203.noarch.rpm"
    ],
    "x86_64": [
        "sqlite-debugsource-3.37.2-2.oe2203.x86_64.rpm",
        "sqlite-3.37.2-2.oe2203.x86_64.rpm",
        "sqlite-devel-3.37.2-2.oe2203.x86_64.rpm",
        "sqlite-debuginfo-3.37.2-2.oe2203.x86_64.rpm"
    ],
    "src": [
        "sqlite-3.37.2-2.oe2203.src.rpm"
    ],
    "aarch64": [
        "sqlite-devel-3.37.2-2.oe2203.aarch64.rpm",
        "sqlite-debugsource-3.37.2-2.oe2203.aarch64.rpm",
        "sqlite-debuginfo-3.37.2-2.oe2203.aarch64.rpm",
        "sqlite-3.37.2-2.oe2203.aarch64.rpm"
    ]
}