NA

CVE-2023-32697

Published: 23/05/2023 Updated: 31/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

SQLite JDBC is a library for accessing and creating SQLite database files in Java. Sqlite-jdbc addresses a remote code execution vulnerability via JDBC URL. This issue impacting versions 3.6.14.1 up to and including 3.41.2.1 and has been fixed in version 3.41.2.2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sqlite jdbc project sqlite jdbc

Vendor Advisories

Debian Bug report logs - #1036706 xerial-sqlite-jdbc: CVE-2023-32697 Package: src:xerial-sqlite-jdbc; Maintainer for src:xerial-sqlite-jdbc is Debian Java Maintainers <pkg-java-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 24 May 2023 14:12:02 UTC Severity: gra ...
Description<!---->A flaw was found in SQLite-JDBC A vulnerability found JDBC URL allowed a malicious user to cause Remote Code Execution (RCE)A flaw was found in SQLite-JDBC A vulnerability found JDBC URL allowed a malicious user to cause Remote Code Execution (RCE) ...