Theregister 16-Year-Old SQLite Bug Disrupts Tailscale Services
Article Content
- •A 16-year-old bug in SQLite caused outages for Tailscale users starting in late 2025.
- •Tailscale collaborated with SQLite maintainers to develop a new tool for diagnosing the issue.
- •The bug led to repeated database corruption, impacting Tailscale's backup processes.
Tailscale experienced significant outages starting in late 2025 due to a long-standing bug in SQLite's write-ahead log (WAL). After a six-month investigation, Tailscale identified the issue with assistance from SQLite maintainers, who developed a new logging tool to trace the problem. The bug, which had been hidden for 16 years, caused repeated database corruption during backup processes. Tailscale relies on SQLite for managing its peer-to-peer networking service, which connects devices in a virtual private mesh network. Despite thorough diagnostics, the team struggled to reproduce the issue due to the absence of reliable triggers. The bug's root cause was linked to SQLite's checkpointing process, which is crucial for database integrity. Tailscale has since resolved the issue and improved its logging capabilities to prevent future occurrences.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…