Bug 2487269 (CVE-2026-11824) - CVE-2026-11824 sqlite: SQLite: Arbitrary code execution and crash via heap-based buffer overflow in FTS5
Summary: CVE-2026-11824 sqlite: SQLite: Arbitrary code execution and crash via heap-ba...
Keywords:
Status: NEW
Alias: CVE-2026-11824
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2508054 2508055 2508057 2508059 2508060 2508061 2508062 2508058
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-06-09 20:02 UTC by OSIDB Bzimport
Modified: 2026-09-08 15:03 UTC (History)
23 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2026:59180 0 None None None 2026-08-24 21:57:44 UTC
Red Hat Product Errata RHBA-2026:59221 0 None None None 2026-08-24 22:42:34 UTC
Red Hat Product Errata RHBA-2026:59550 0 None None None 2026-08-25 17:43:17 UTC
Red Hat Product Errata RHBA-2026:60260 0 None None None 2026-08-26 11:02:00 UTC
Red Hat Product Errata RHBA-2026:60273 0 None None None 2026-08-26 11:56:29 UTC
Red Hat Product Errata RHBA-2026:60467 0 None None None 2026-08-27 10:52:55 UTC
Red Hat Product Errata RHBA-2026:60468 0 None None None 2026-08-27 10:54:38 UTC
Red Hat Product Errata RHBA-2026:60512 0 None None None 2026-08-27 13:08:48 UTC
Red Hat Product Errata RHBA-2026:61262 0 None None None 2026-08-31 02:14:47 UTC
Red Hat Product Errata RHBA-2026:61342 0 None None None 2026-08-31 09:06:08 UTC
Red Hat Product Errata RHBA-2026:62032 0 None None None 2026-09-01 13:52:48 UTC
Red Hat Product Errata RHBA-2026:65387 0 None None None 2026-09-08 15:03:03 UTC
Red Hat Product Errata RHSA-2026:54371 0 None None None 2026-08-12 14:17:31 UTC
Red Hat Product Errata RHSA-2026:54530 0 None None None 2026-08-13 11:34:56 UTC
Red Hat Product Errata RHSA-2026:55601 0 None None None 2026-08-17 11:59:00 UTC
Red Hat Product Errata RHSA-2026:55603 0 None None None 2026-08-17 14:34:00 UTC
Red Hat Product Errata RHSA-2026:58927 0 None None None 2026-08-24 13:05:43 UTC
Red Hat Product Errata RHSA-2026:58936 0 None None None 2026-08-24 15:03:59 UTC
Red Hat Product Errata RHSA-2026:58938 0 None None None 2026-08-24 13:06:38 UTC
Red Hat Product Errata RHSA-2026:58939 0 None None None 2026-08-24 11:15:49 UTC
Red Hat Product Errata RHSA-2026:59020 0 None None None 2026-08-24 14:17:57 UTC
Red Hat Product Errata RHSA-2026:59024 0 None None None 2026-08-24 14:12:38 UTC
Red Hat Product Errata RHSA-2026:59956 0 None None None 2026-08-26 07:38:40 UTC
Red Hat Product Errata RHSA-2026:61697 0 None None None 2026-08-31 16:04:24 UTC
Red Hat Product Errata RHSA-2026:62232 0 None None None 2026-09-01 18:59:32 UTC
Red Hat Product Errata RHSA-2026:62236 0 None None None 2026-09-01 19:12:11 UTC
Red Hat Product Errata RHSA-2026:62416 0 None None None 2026-09-02 07:31:34 UTC

Description OSIDB Bzimport 2026-06-09 20:02:42 UTC
SQLite before 3.53.2 contains a heap-based buffer overflow vulnerability in the FTS5 full-text search extension that allows attackers to cause a crash or execute arbitrary code by supplying a crafted database with malicious continuation page metadata specifying a szLeaf value smaller than 4. Attackers can trigger an integer underflow in fts5ChunkIterate() causing an inflated remaining byte count during FTS5 MATCH query processing, leading to a heap buffer overflow of attacker-controlled data in applications compiled with SQLITE_ENABLE_FTS5.

Comment 3 errata-xmlrpc 2026-08-12 14:17:30 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:54371 https://access.redhat.com/errata/RHSA-2026:54371

Comment 4 errata-xmlrpc 2026-08-13 11:34:55 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:54530 https://access.redhat.com/errata/RHSA-2026:54530

Comment 5 errata-xmlrpc 2026-08-17 11:58:59 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:55601 https://access.redhat.com/errata/RHSA-2026:55601

Comment 6 errata-xmlrpc 2026-08-17 14:34:00 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:55603 https://access.redhat.com/errata/RHSA-2026:55603

Comment 7 errata-xmlrpc 2026-08-24 11:15:48 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.8 Telecommunications Update Service

Via RHSA-2026:58939 https://access.redhat.com/errata/RHSA-2026:58939

Comment 8 errata-xmlrpc 2026-08-24 13:05:42 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:58927 https://access.redhat.com/errata/RHSA-2026:58927

Comment 9 errata-xmlrpc 2026-08-24 13:06:37 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:58938 https://access.redhat.com/errata/RHSA-2026:58938

Comment 10 errata-xmlrpc 2026-08-24 14:12:37 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On

Via RHSA-2026:59024 https://access.redhat.com/errata/RHSA-2026:59024

Comment 11 errata-xmlrpc 2026-08-24 14:17:56 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On

Via RHSA-2026:59020 https://access.redhat.com/errata/RHSA-2026:59020

Comment 12 errata-xmlrpc 2026-08-24 15:03:58 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:58936 https://access.redhat.com/errata/RHSA-2026:58936

Comment 13 errata-xmlrpc 2026-08-26 07:38:39 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.6 Extended Update Support

Via RHSA-2026:59956 https://access.redhat.com/errata/RHSA-2026:59956

Comment 14 errata-xmlrpc 2026-08-31 16:04:22 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10.0 Extended Update Support

Via RHSA-2026:61697 https://access.redhat.com/errata/RHSA-2026:61697

Comment 15 errata-xmlrpc 2026-09-01 18:59:30 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions

Via RHSA-2026:62232 https://access.redhat.com/errata/RHSA-2026:62232

Comment 16 errata-xmlrpc 2026-09-01 19:12:08 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions

Via RHSA-2026:62236 https://access.redhat.com/errata/RHSA-2026:62236

Comment 17 errata-xmlrpc 2026-09-02 07:31:32 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.6 Extended Update Support

Via RHSA-2026:62416 https://access.redhat.com/errata/RHSA-2026:62416


Note You need to log in before you can comment on or make changes to this bug.