PT-2008-5320 · Oracle · Oracle Database

Published

2008-10-14

·

Updated

2017-08-08

·

CVE-2008-3995

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Oracle Database versions 10.1.0.5, 10.2.0.4, and 11.1.0.6
Description The issue affects the confidentiality and integrity of the system, related to the DBMS CDC PUBLISH component in the Change Data Capture component. It allows remote authenticated users to exploit the vulnerability.
Recommendations For Oracle Database version 10.1.0.5, update to a version that includes the fix for this issue. For Oracle Database version 10.2.0.4, update to a version that includes the fix for this issue. For Oracle Database version 11.1.0.6, update to a version that includes the fix for this issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2008-3995

Affected Products

Oracle Database