Turso through 0.8.0-pre.8 contains an out-of-bounds read vulnerability in the table-leaf page reader that uses an attacker-controlled cell-count field without bounds validation. Attackers can craft a malicious database file with a modified cell count value to trigger an index-out-of-bounds panic when querying, causing denial of service in any application that opens untrusted database files.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-04 15:17
Updated : 2026-09-14 20:16
NVD link : CVE-2026-85698
Mitre link : CVE-2026-85698
CVE.ORG link : CVE-2026-85698
JSON object : View
Products Affected
No product.
CWE
CWE-125
Out-of-bounds Read
