CVE-2025-29088

All FrameworksSQLiteCWE-190CVE-2025-29088

CVE-2025-29088

State: PUBLISHED · Published: 2025-04-10 · Updated: 2025-08-26 · Assigner: mitre
Description
In SQLite 3.49.0 before 3.49.1, certain argument values to sqlite3_db_config (in the C-language API) can cause a denial of service (application crash). An sz*nBig multiplication is not cast to a 64-bit integer, and consequently some memory allocations may be incorrect.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/29xxx/CVE-2025-29088.json