Unauthenticated Remote Code Execution in Oracle Database Server's Clusterware
CVE-2024-21126
What is CVE-2024-21126?
An unauthenticated remote code execution vulnerability exists in the Oracle Database Portable Clusterware component of Oracle Database Server, specifically affecting versions 19.3 through 19.23 and 21.3 through 21.14. An attacker with network access via DNS could exploit this vulnerability to compromise the Clusterware, potentially leading to unauthorized changes and partial denial of service conditions. Although the vulnerability resides within the Clusterware, the ramifications may extend beyond it, impacting additional Oracle products.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Database - Enterprise Edition 19.3 <= 19.23
Database - Enterprise Edition 21.3 <= 21.14
References
CVSS V3.1
Timeline
Vulnerability published