Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

cve: Update sqlite to 3.45.0 #8259

Merged
merged 1 commit into from
Feb 20, 2024

Conversation

Smjert
Copy link
Member

@Smjert Smjert commented Jan 26, 2024

Also resolves CVE-2023-7104 and CVE-2024-0232

Fixes #8238
Fixes #8256

@Smjert Smjert added libraries For things referring to osquery third party libraries cve labels Jan 26, 2024
@Smjert Smjert requested review from a team as code owners January 26, 2024 20:29
@Smjert Smjert force-pushed the stefano/cve/update-sqlite-3.45 branch from 83a7a5d to 01f1e9c Compare January 26, 2024 20:32
@great944
Copy link

great944 commented Feb 5, 2024

Hello @Smjert, thanks for the fix! what is the ETA for this to land in master. thanks again.

@Smjert Smjert added this to the 5.12.0 milestone Feb 5, 2024
@Smjert
Copy link
Member Author

Smjert commented Feb 5, 2024

Hello @Smjert, thanks for the fix! what is the ETA for this to land in master. thanks again.

I've set a milestone now for clarity. Normally though all CVE PRs land on the next version/milestone unless they are really critical and justify a new minor version.

@Smjert Smjert merged commit 77aced2 into osquery:master Feb 20, 2024
16 checks passed
@Smjert Smjert deleted the stefano/cve/update-sqlite-3.45 branch February 20, 2024 18:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
cve libraries For things referring to osquery third party libraries
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Library sqlite has vulnerability CVE-2024-0232 Library sqlite has vulnerability CVE-2023-7104
3 participants