CVE-2025-70873

ADVISORY - nist

Summary

An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

EPSS Score: 0.00029 (0.080)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Improper Clearing of Heap Memory Before Release ('Heap Inspection')

ADVISORY - redhat

Use of Uninitialized Resource


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in