Open Source Development

Power Open Source Development

Explore the open source tools and capabilities for building and deploying modern applications on IBM Power platforms including AIX, IBM i, and Linux.


#Power


#Power

 View Only
  • 1.  Question about SQLite vulnerability CVE-2025-6965

    Posted Tue August 05, 2025 08:23 AM

    Hello,

    I see that SQLite is vulnerable to CVE-2025-6965.
    The problem occurs in versions of SQLite below 3.50.2; the current version of SQLite for AIX is 3.49.2-2.
    Version 3.49.2-2 was released on 31 July 2025; the CVE was published on 1 July 2025.
    I would therefore like to ask whether the current SQLite on AIX is affected by this CVE.
    If so, do you plan to release a new version of SQLite?

    Best regards,
    Adam



    ------------------------------
    Adam Waściński
    ------------------------------

    #AIXOpenSource


  • 2.  RE: Question about SQLite vulnerability CVE-2025-6965

    Posted Tue August 05, 2025 09:38 AM

    HI,
    We will update SQLite with the fixed version.  Thanks for informing us.

    Thanks
    Ranjit



    ------------------------------
    Ranjit Ranjan
    ------------------------------



  • 3.  RE: Question about SQLite vulnerability CVE-2025-6965

    Posted Fri August 08, 2025 08:17 AM

    Hi Ranjit,

    Is there any ETA on when the fix will be available?

    Thanks.



    ------------------------------
    Jowel Legaspi
    ------------------------------



  • 4.  RE: Question about SQLite vulnerability CVE-2025-6965

    Posted Fri August 08, 2025 09:29 AM

    Hi Ranjit,

    Is there any ETA on when the fix will be available?

    Thanks.



    ------------------------------
    Jowel Legaspi
    ------------------------------



  • 5.  RE: Question about SQLite vulnerability CVE-2025-6965

    Posted Fri August 08, 2025 10:47 AM

    Hi,
    We will update this discussion once it's available in tool box. You can expect in 3-4 weeks. 

    Thanks
    Ranjit



    ------------------------------
    Ranjit Ranjan
    ------------------------------



  • 6.  RE: Question about SQLite vulnerability CVE-2025-6965

    Posted Mon August 25, 2025 03:17 AM

    Good day Ranjit

    Do you have a date yet for the release?  I have several systems that were flagged with the memory corruption vulnerability.



    ------------------------------
    Willem van Wyk
    ------------------------------



  • 7.  RE: Question about SQLite vulnerability CVE-2025-6965

    Posted Thu August 28, 2025 03:26 AM

    Hi All, 

    SQLite 3.50.4 is available for upgrade. Please update your systems.

    Thanks
    Ranjit



    ------------------------------
    Ranjit Ranjan
    ------------------------------