PT-2015-1133 · Oracle · Oracle Database Server

Published

2015-04-16

·

Updated

2017-01-03

·

CVE-2015-0479

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Oracle Database Server versions 11.2.0.3 through 11.2.0.4 Oracle Database Server version 12.1.0.1
Description The issue affects the availability of the system, allowing remote authenticated users to impact it via unknown vectors. It is related to the XDK and XDB - XML Database component in Oracle Database Server.
Recommendations For Oracle Database Server versions 11.2.0.3 through 11.2.0.4, update to a version that includes a fix for this issue. For Oracle Database Server version 12.1.0.1, update to a version that includes a fix for this issue. As a temporary workaround, consider restricting access to the XDK and XDB - XML Database component to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-10006
CVE-2015-0479

Affected Products

Oracle Database Server