Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2018-20346

30
FAUCET Score

CVE-2018-20346 is an integer overflow vulnerability in SQLite versions prior to 3.25.3, specifically affecting the FTS3 extension. This flaw, dubbed "Magellan," allows remote attackers to execute arbitrary code by crafting SQL statements that manipulate FTS3 shadow tables. With a CVSS score of 8.1 (High), exploitation requires high attack complexity but can lead to complete compromise of confidentiality, integrity, and availability. There is no public exploit code available, nor is there evidence of active exploitation or significant community discussion.

Impacted Technologies

VendorProductVersion(s)CPE
< 3.25.3CPE matchmatch criteria
cpe:2.3:a:sqlite:sqlite:*:*:*:*:*:*:*:*
< 71.0.3578.80CPE matchmatch criteria
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
6.0CPE matchmatch criteria
cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*
8.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
15.0CPE matchmatch criteria
cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

8.1HIGH

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.2
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
9.86%
Probability of exploitation in next 30 days
EPSS Percentile
95.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0986 is in the 76th percentile among its peer group of 8,920 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

microsoftpatch availablevia msrc
Product: 16939-17084Fixed in: 18.2.1-1
microsoftpatch availablevia msrc
Product: 19856-17084Fixed in: 18.2.1-1
microsoftpatch availablevia msrc
Product: 16939-16817Fixed in: 18.2.1-1
microsoftpatch availablevia msrc
Product: azl3 ceph 18.2.1-1 on Azure Linux 3.0Fixed in: 18.2.1-1
microsoftpatch availablevia msrc
Product: azl3 ceph 16.2.10-3 on Azure Linux 3.0Fixed in: 18.2.1-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 x64Fixed in: 18.2.1-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 ARMFixed in: 18.2.1-1

Vendor Advisories (3)

microsoft2024-Jun/CVE-2018-20346

CVE-2018-20346

Jun 11, 2024
microsoft2018-Dec/CVE-2018-20346Important

SQLite before 3.25.3 when the FTS3 extension is enabled encounters an integer overflow (and resultant buffer overflow) for FTS3 queries that occur after crafted changes to FTS3 shadow tables allowing remote attackers to execute arbitrary code by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases) aka Magellan.

Dec 11, 2018
redhatCVE-2018-20346Important

sqlite: Multiple flaws in sqlite which can be triggered via corrupted internal databases (Magellan)

Dec 4, 2018

References

lists.opensuse.org / opensuse-security-announce/2019-04/msg00040.html
Third Party Advisory
lists.opensuse.org / opensuse-security-announce/2019-04/msg00070.html
Mailing ListThird Party Advisory
access.redhat.com / articles/3758321
Third Party Advisory
blade.tencent.com / magellan/index_en.html
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
chromereleases.googleblog.com / 2018/12/stable-channel-update-for-desktop.html
Third Party Advisory
chromium.googlesource.com / chromium/src/+/c368e30ae55600a1c3c9cb1710a54f9c55de786e
Third Party Advisory
crbug.com / 900910
Permissions RequiredThird Party Advisory
github.com / zhuowei/worthdoingbadly.com/blob/master/_posts/2018-12-14-sqlitebug.html
ExploitThird Party Advisory
kc.mcafee.com / corporate/index
lists.debian.org / debian-lts-announce/2018/12/msg00012.html
Mailing ListThird Party Advisory
lists.debian.org / debian-lts-announce/2020/08/msg00037.html
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/PU4NZ6DDU4BEM3ACM3FM6GLEPX56ZQXK
news.ycombinator.com / item
Third Party Advisory
security.gentoo.org / glsa/201904-21
Third Party Advisory
sqlite.org / src/info/940f2adc8541a838
PatchThird Party Advisory
sqlite.org / src/info/d44318f59044162e
PatchThird Party Advisory
support.apple.com / HT209443
support.apple.com / HT209446
support.apple.com / HT209447
support.apple.com / HT209448
support.apple.com / HT209450
support.apple.com / HT209451
usn.ubuntu.com / 4019-1
usn.ubuntu.com / 4019-2
worthdoingbadly.com / sqlitebug
ExploitThird Party Advisory
freebsd.org / security/advisories/FreeBSD-EN-19:03.sqlite.asc
Third Party Advisory
mail-archive.com / sqlite-users%40mailinglists.sqlite.org/msg113218.html
oracle.com / security-alerts/cpuapr2020.html
sqlite.org / releaselog/3_25_3.html
Release NotesVendor Advisory
synology.com / security/advisory/Synology_SA_18_61
Third Party Advisory
securityfocus.com / bid/106323
Third Party AdvisoryVDB Entry