Security Advisory

CVE-2025-29088

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-10 00:00:00
Last updated 2025-08-26 19:27:20
Assigner mitre
State PUBLISHED

Description

In SQLite 3.49.0 before 3.49.1, certain argument values to sqlite3_db_config (in the C-language API) can cause a denial of service (application crash). An sz*nBig multiplication is not cast to a 64-bit integer, and consequently some memory allocations may be incorrect.