Database Gateway for ODBC Vulnerability in Oracle Database Server
CVE-2020-2512

5.9MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
15 January 2020

Summary

A vulnerability exists in the Database Gateway for ODBC component of the Oracle Database Server, affecting specific supported versions. This issue allows an unauthenticated attacker with network access via OracleNet to exploit the Database Gateway for ODBC. Successful exploitation can lead to a denial of service, causing the gateway to hang or crash repeatedly, impacting its availability.

Affected Version(s)

Oracle Database 11.2.0.4

Oracle Database 12.1.0.2

Oracle Database 12.2.0.1

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.