CVE-2016-6153
MEDIUMSQLite <3.13.0 - Info Disclosure
Title source: llmDescription
os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm, which might allow local users to obtain sensitive information, cause a denial of service (application crash), or have unspecified other impact by leveraging use of the current working directory for temporary files.
References (13)
Scores
CVSS v3
5.9
EPSS
0.0003
EPSS Percentile
9.0%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Classification
CWE
CWE-20
Status
published
Affected Products (4)
sqlite/sqlite
< 3.12.2
fedoraproject/fedora
opensuse/leap
n/a/n/a
Timeline
Published
Sep 26, 2016
Tracked Since
Feb 18, 2026