CVE-2007-5513: Medium severity Oracle Database Server vulnerability
The XML DB (XMLDB) component in Oracle Database 9.2.0.8, 9.2.0.8DV, and 10.1.0.5 generates incorrect audit entries in the USERID column in which (1) long usernames are trimmed to 5 characters, or (2) short entries contain any extra characters from usernames in previous entries, aka DB23.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5513?
CVE-2007-5513 is considered a high-severity vulnerability due to its potential impact on system audit integrity.
How do I fix CVE-2007-5513?
To fix CVE-2007-5513, it is recommended to upgrade to a patched version of Oracle Database where this issue has been addressed.
What are the affected versions of Oracle Database for CVE-2007-5513?
CVE-2007-5513 affects Oracle Database versions 9.2.0.8, 9.2.0.8DV, and 10.1.0.5.
What kind of data integrity issue does CVE-2007-5513 cause?
CVE-2007-5513 causes data integrity issues by generating incorrect audit entries, which may misrepresent user activity.
Is CVE-2007-5513 a critical vulnerability?
While not classified as critical, CVE-2007-5513 poses significant risks due to its effects on auditing and user identification.