Sploitus

CVE-2025-7458

No indexed exploits for CVE-2025-7458 yet

An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execute arbitrary SQL statements to cause a denial of service or disclose sensitive information from process memory via a crafted SELECT statement with a large number of expressions in the ORDER BY clause.

Affected products
Debian, Sqlite
Sqlite
< 3.41.2
Fix
Available
CVSS 3.1
9.1 CRITICAL
EPSS
0.2% (14th percentile)
Weakness
CWE-190
NVD status
Analyzed
Published
2025-07-29
Attack patterns
CAPEC-92

Fix

Upgrade to SQLite version 3.41.2 or newer.

CVE-2025-7458 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2025-7458 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2025-7458 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.