Alerts This Week
Warning Icon 1 792
Alerts This Week
Warning Icon 1 792

Mageia 9 sqlite3 Important Info Disclosure Fix CVE-2025-70873

mageia
Calendar Grey June 11, 2026
Dist Mageia Esm H88
Mageia 9 sqlite3 update addresses CVE-2025-70873 with critical information disclosure fix. Stay secure!
Security update

Summary

Description: sqlite3 shipped in Mageia 9 lacks ICU support. This update brings sqlite3-icu to allow ICU support be loaded as an optional extension. This update fixes CVE-2025-70873, an information disclosure issue. The zipfileInflate function in the zipfile extension in SQLite v3.51.1 and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.

References

- https://bugs.mageia.org/show_bug.cgi?id=35267

- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/H7ONAPUT5SJWZW7KAOAYADR7UWPOJ74W/

- https://bugs.mageia.org/show_bug.cgi?id=32516

- https://www.cve.org/CVERecord?id=CVE-2025-70873

Resolution

SRPMS

- 9/core/sqlite3-3.40.1-1.8.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 11 Jun 2026 
URL: https://advisories.mageia.org/MGASA-2026-0195.html
Type: security
CVE: CVE-2025-70873

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here