Security News

Cybersecurity news aggregator

🔓
MEDIUM Vulnerabilities Ubuntu Security

USN-8565-1: SQLite vulnerabilities

  • What: Security vulnerabilities in SQLite
  • Impact: Potential denial of service and information disclosure
Read Full Article →

Ubuntu Security Notices USN-8565-1 USN-8565-1: SQLite vulnerabilities Publication date 20 July 2026 Overview Several security issues were fixed in SQLite. Releases 26.04 LTS 24.04 LTS 22.04 LTS Open side navigation Close side navigation Packages Details Update instructions References Packages sqlite3 - C library that implements an SQL database engine Details It was discovered that SQLite did not properly handle NULL pointer dereferences in the Session Extension when applying a corrupt changeset. An attacker could possibly use this issue to cause SQLite to crash, resulting in a denial of service. ( CVE-2026-50812 ) It was discovered that SQLite had a buffer overread in the Session Extension when processing a corrupt changeset. An attacker could possibly use this issue to obtain sensitive information. ( CVE-2026-50813 ) It was discovered that SQLite did not properly handle NULL pointer dereferences in the Session Extension when applying a corrupt changeset. An attacker could possibly use this issue to cause SQLite to crash, resulting in a denial of service. ( CVE-2026-50812 ) It was discovered that SQLite had a buffer overread in the Session Extension when processing a corrupt changeset. An attacker could possibly use this issue to obtain sensitive information. ( CVE-2026-50813 ) Update instructions In general, a standard system update will make all the necessary changes. Learn more about how to get the fixes. The problem can be corrected by updating your system to the following package versions: Ubuntu Release Package Version 26.04 LTS resolute sqlite3 – 3.46.1-9ubuntu0.2 24.04 LTS noble sqlite3 – 3.45.1-1ubuntu2.7 22.04 LTS jammy sqlite3 – 3.37.2-2ubuntu0.7 Reduce your security exposure Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines. Get Ubuntu Pro References CVE-2026-50813 CVE-2026-50812 CVE-2026-50813 CVE-2026-50812

Share this article