[ubuntu/disco-proposed] sqlite3 3.27.2-2 (Accepted)

Gianfranco Costamagna costamagnagianfranco at yahoo.it
Sat Mar 23 07:20:00 UTC 2019


sqlite3 (3.27.2-2) unstable; urgency=high

  * Backport security related patches:
    - use unsigned integers to count the number of pages in a freelist
      during an integrity_check, to avoid any possibility of a signed integer
      overflow,
    - fix a crash that could occur if the RHS of an IN expression is a
      correlated sub-query that refers to the outer query from within a
      window frame definition only,
    - ensure that ALTER TABLE commands open statement transactions,
    - CVE-2019-9937: fix an fts5 problem with interleaving reads and writes
      in a single transaction (closes: #925290),
    - CVE-2019-9936: fix a buffer overread that could occur when running fts5
      prefix queries inside a transaction (closes: #925289).

Date: 2019-03-22 22:42:32.475119+00:00
Changed-By: Laszlo Boszormenyi <gcs at debian.org>
Signed-By: Gianfranco Costamagna <costamagnagianfranco at yahoo.it>
https://launchpad.net/ubuntu/+source/sqlite3/3.27.2-2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Disco-changes mailing list