MEDIUM 5.5 Microsoft
CVE-2021-20227
A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries locally on the SQLite database to cause a denial of service or possible code execution by triggering a use-after-free. The highest threat from this vulnerability is to system availability.
Microsoft Security Update 2026-Aug: A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries locally on the SQLite database to cause a denial of service or possible code execution by triggering a use-after-free. The highest threat from this vulnerability is to system availability.
Affected Products
- sqlite-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64
- sqlite-devel-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64
- sqlite-libs-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64
- sqlite-debuginfo-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64
- sqlite-3.34.1-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARM
- sqlite-devel-3.34.1-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARM
- sqlite-libs-3.34.1-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARM
- sqlite-debuginfo-3.34.1-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARM
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-20227
- https://nvd.nist.gov/vuln/detail/CVE-2021-20227
This medium severity vulnerability with a CVSS score of 5.5 was published on 2026-08-06 via Microsoft. Affected: sqlite-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64, sqlite-devel-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64, sqlite-libs-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64 and 5 more.
vulnfeed aggregates 9044 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.