CVE-2025-70873

Published: Mar 12, 2026 Last Modified: Mar 12, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

https://gist.github.com/cnwangjihe/f496393f30f5ecec5b18c8f5ab072054
https://sqlite.org/forum/forumpost/761eac3c82
https://sqlite.org/src/info/3d459f1fb1bd1b5e