SQLite 3.41 has a use-after-free vulnerability in the...
Critical severity
Unreviewed
Published
Jul 30, 2026
to the GitHub Advisory Database
•
Updated Jul 30, 2026
Description
Published by the National Vulnerability Database
Jul 30, 2026
Published to the GitHub Advisory Database
Jul 30, 2026
Last updated
Jul 30, 2026
SQLite 3.41 has a use-after-free vulnerability in the shared cache lock management logic of the btree module. The program frees a BtLock structure without removing the node from the linked list. Subsequent linked list traversal accesses the released memory, which can lead to denial of service and sensitive memory information disclosure.
References