Description
flattenSubquery in select.c in SQLite 3.30.1 mishandles certain uses of SELECT DISTINCT involving a LEFT JOIN in which the right-hand side is a view. This can cause a NULL pointer dereference (or incorrect results).
Remediation
References
Related Vulnerabilities
WordPress 3.7.x Denial of Service Vulnerability (3.7 - 3.7.25)
WordPress Plugin Conditional Payments for WooCommerce Cross-Site Request Forgery (2.3.1)
Moodle URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-14831)
WordPress Plugin SnapApp Multiple Cross-Site Scripting Vulnerabilities (1.5)