Last seen July 16, 2025

SQLite integer overflow flaw Vulnerability

Evidence indicates that SQLite is affected by a security issue. Reported affected versions include 3.50.2.

Technical Severity
Low severity
Lifecycle Status

STABLE

What Happened

Evidence indicates that SQLite is affected by a security issue. Reported affected versions include 3.50.2.

Why This Matters

Publisher reporting describes a security event affecting SQLite. BugSkan could not yet bind a CVE or affected version, so treat the source details as the current record.

Recommended Action

Confirm whether SQLite is present in your environment, compare your versions against the report, and apply available vendor patches or mitigations.

Exposure

My Interests Exposure

Exposure unknown

Recommended Response
Last Seen

Jul 16, 2025 05:30

Exposure reason: This incident does not currently match a technology in My Interests.

Exploitation status: UNKNOWN

Affected versions: 3.50.2

Primary entities:

GoogleSQLiteAI AgentsBefore Hackers ActBig SleepCritical SQLite Vulnerability

Authoritative Intelligence

CVE CVE-2025-6965 Incident identifier

EPSS is a vulnerability exploitation probability signal, not proof that your environment is exposed. CISA KEV means known exploitation of the vulnerability, not that your system was exploited.

Public GitHub References

Search GitHub for public repositories that mention this CVE. BugSkan only lists repository metadata as a defensive awareness signal — it does not fetch or display exploit code.

Timeline

  • Incident first seen
    Jul 16, 2025 05:30

    BugSkan first recorded this incident.

  • Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers Act - The Hacker News
    Jul 16, 2025 05:30

    thehackernews.com · Vulnerability

Sources

Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers Act - The Hacker News

thehackernews.com · Jul 16, 2025 05:30

Google's AI agent, Big Sleep, discovered CVE-2025-6965, a critical memory corruption vulnerability in SQLite affecting versions prior to 3.50.2. This integer overflow flaw could allow an attacker to achieve a read off the end of an array by injecting arbitrary SQL statements, and was identified proactively to prevent impending zero-day exploitation.

Open publisher source

Other BugSkan incidents that share identifiers, products, or vendors with this report.

My Interests Match

Want personalized relevance?

Create an account to see which incidents overlap with your interests.

← Back to incident intelligence