First published: Wed Jan 14 2009(Updated: )
Unspecified vulnerability in the SQL*Plus Windows GUI component in Oracle Database allows local users to affect confidentiality via unknown vectors.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database | =10.1.0.5 | |
Oracle Database | =10.1.2.3 | |
Oracle Database | =10.1.4.2 | |
Oracle Database | =10.2.0.2 | |
Oracle Database | =10.2.0.3 | |
Oracle Database | =10.2.0.4 | |
Oracle Database |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3973 is considered a moderate severity vulnerability due to its potential impact on data confidentiality.
To mitigate CVE-2008-3973, users should apply the latest patches provided by Oracle for the affected database versions.
CVE-2008-3973 affects several versions of Oracle Database 10g and 11g, including specific versions like 10.1.0.5 and 10.2.0.4.
Yes, local users can exploit CVE-2008-3973 to potentially affect confidentiality in the impacted SQL*Plus Windows GUI component.
Currently, there are no documented workarounds for CVE-2008-3973 other than applying available security updates.