CVE-2019-19923 vulnerability in SQLite and Other Products
Published on December 24, 2019
flattenSubquery in select.c in SQLite 3.30.1 mishandles certain uses of SELECT DISTINCT involving a LEFT JOIN in which the right-hand side is a view. This can cause a NULL pointer dereference (or incorrect results).
Products Associated with CVE-2019-19923
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2019-19923 are published in these products:
Exploit Probability
EPSS
6.20%
Percentile
90.68%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.