Description
The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement comparison operators, which allows context-dependent attackers to cause a denial of service (invalid free operation) or possibly have unspecified other impact via a crafted CHECK clause, as demonstrated by CHECK(0&O>O) in a CREATE TABLE statement.
Remediation
References
Related Vulnerabilities
WordPress Plugin Post Views Count (Support caching plugins!) Cross-Site Scripting (3.0.2)
WordPress Plugin JSON API User Privilege Escalation (3.9.3)
WordPress Plugin Relevant-Related Posts by BestWebSoft Cross-Site Scripting (1.1.9)
WordPress Plugin CopySafe Web Protection Cross-Site Request Forgery (2.5)