Format: 1.8 Date: Fri, 14 Jun 2019 15:02:21 -0300 Source: sqlite3 Binary: lemon sqlite3 sqlite3-doc libsqlite3-0 libsqlite3-dev libsqlite3-tcl Architecture: armhf Version: 3.22.0-1ubuntu0.1 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas S. Barbosa Description: lemon - LALR(1) Parser Generator for C or C++ libsqlite3-0 - SQLite 3 shared library libsqlite3-dev - SQLite 3 development files libsqlite3-tcl - SQLite 3 Tcl bindings sqlite3 - Command line interface for SQLite 3 sqlite3-doc - SQLite 3 documentation Changes: sqlite3 (3.22.0-1ubuntu0.1) bionic-security; urgency=medium . * SECURITY UPDATE: Integer overflow - debian/patches/CVE-2018-20346-and-CVE-2018-20506.patch: add extra defenses against strategically corrupt databases in ext/fts3/fst3.c, ext/fts3/fts3_write.c, test/fts3corrupt4.test, test/permutations.test. - CVE-2018-20346 - CVE-2018-20506 * SECURITY UPDATE: Denial of service - debian/patches/CVE-2018-20505.patch: remove assert which fail due to a malformed PK and add check in src/wherecode.c, test/rowvalue.test. - CVE-2018-20505 * SECURITY UPDATE: heap out-of-bound read - debian/patches/CVE-2019-8457.patch: enhance the rtreenode() in ext/rtree/rtree.c. - debian/patches/CVE-2019-8457-string-interface.patch: add string interface in src/btree.c, src/build.c, src/func.c, src/mutex.c, src/pragma.c, src/printf.c, src/sqlite.h.in, src/sqliteInt.h, src/treeview.c, src/vdbeaux.c, src/vdbetrace.c, src/wherecode.c. - CVE-2019-8457 * security update: heap-buffer over-read - debian/patches/cve-2019-9936.patch: add checks in code in order to fix in ext/fts5/fts5_hash.c, ext/fts5/test/fts5aa.test. - CVE-2019-9936 * security update: NULL pointer dereference - debian/patches/cve-2019-9937.patch: fix in ext/fts5/fts5Int.h, ext/fts5/fts5_hash.c, ext/fts5/fts5_index.c, ext/fts5/test/fts5aa.test. - CVE-2019-9937 Checksums-Sha1: b8a07aefba2a57fce7a46194da0abe1bb8660dc6 61408 lemon-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 19b6934839529202a69e13b659e2cd47cfbdb548 50436 lemon_3.22.0-1ubuntu0.1_armhf.deb 0b4f5a580816362b27570d13d0ca364c5a260c12 1307224 libsqlite3-0-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 9400164896548f3b32e754a0626de93fa624e93a 422260 libsqlite3-0_3.22.0-1ubuntu0.1_armhf.deb 7d0f3ad75be716edbf334e00fae840735a7902d3 572504 libsqlite3-dev_3.22.0-1ubuntu0.1_armhf.deb 0772fd9bcbc7f8eeb11c9b85a969b409de407a00 56720 libsqlite3-tcl-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb e8fb734207db8b41909d009979f0763269a00ce0 18108 libsqlite3-tcl_3.22.0-1ubuntu0.1_armhf.deb fb1bff3bc4f7156bb7a0511a31c8e7bead98e8ab 2844952 sqlite3-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 9e6f48d83081c38c8dc41282356511df118c8b4a 7606 sqlite3_3.22.0-1ubuntu0.1_armhf.buildinfo 0e145b110de1da7ca156783b39c990ca2babc7c3 637900 sqlite3_3.22.0-1ubuntu0.1_armhf.deb Checksums-Sha256: 90494d22cdcb9cee1fa826f293a1307f7689e70369e17e5aabd8c512d88257f4 61408 lemon-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 687c27ac348a70fd4b5ba7e4937b8402ad2ac88608609ac5c6aefbf423f70bd4 50436 lemon_3.22.0-1ubuntu0.1_armhf.deb d0ef1c0a688d05d09d21cdcd09ad116a8ccf2256c1b187d28b5b4e080c925374 1307224 libsqlite3-0-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 41b6b25e9a2a148618ed9827f8ca9190b358f0375f9184bdedb1445ca56ec216 422260 libsqlite3-0_3.22.0-1ubuntu0.1_armhf.deb 5fc45ca00305032b3dd5e99a65fb526d36f6db3e41b883ef89a96282087e8d57 572504 libsqlite3-dev_3.22.0-1ubuntu0.1_armhf.deb a1f873fcfd82b272021c0f8c62df034add68d21dd85c4c25ab6b8471805e51a5 56720 libsqlite3-tcl-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 0ec55d229b90c37d987ce95f64cd5b8adf98c6c2984c3c5fae38e9511abb5778 18108 libsqlite3-tcl_3.22.0-1ubuntu0.1_armhf.deb bd1718d28f000c978d6322a7447add6533c54aafb6e2714aa8f667248d748885 2844952 sqlite3-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 1fcdb31a89cfe4e696130f862adeab9e9ecf56a76a12f479eb6900e4a5102494 7606 sqlite3_3.22.0-1ubuntu0.1_armhf.buildinfo 484ef832382d5abf1f7da966229ff6b0f2b51fa8f7bb772113eab62a78e8ad51 637900 sqlite3_3.22.0-1ubuntu0.1_armhf.deb Files: c84807a9e6d93191b6ecaf6ee206dad6 61408 debug optional lemon-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb ee6abdc820d97810716089357f833bc2 50436 devel optional lemon_3.22.0-1ubuntu0.1_armhf.deb d6f550b64138f496efbdc70bdef15bb0 1307224 debug optional libsqlite3-0-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb acd25e192b6f3f3675289e51dabc73f7 422260 libs standard libsqlite3-0_3.22.0-1ubuntu0.1_armhf.deb d3d97168039dd3ff245b9c386e5b172e 572504 libdevel optional libsqlite3-dev_3.22.0-1ubuntu0.1_armhf.deb 36f72154a34f2e336acf3f8c6115c4bc 56720 debug optional libsqlite3-tcl-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 460c68ade3fdd0a6b2a28e7039f09748 18108 interpreters optional libsqlite3-tcl_3.22.0-1ubuntu0.1_armhf.deb e2630b5c7b520143fbdd1166698e9e21 2844952 debug optional sqlite3-dbgsym_3.22.0-1ubuntu0.1_armhf.ddeb 260d95f6594fd23b37af5ec509869b8f 7606 devel optional sqlite3_3.22.0-1ubuntu0.1_armhf.buildinfo 9c9cd589413a99e6cb74644b68a2ebe5 637900 database optional sqlite3_3.22.0-1ubuntu0.1_armhf.deb Original-Maintainer: Laszlo Boszormenyi (GCS)