First published: Tue Oct 14 2008(Updated: )
Unspecified vulnerability in the Change Data Capture component in Oracle Database 10.1.0.5, 10.2.0.4, and 11.1.0.6 allows remote authenticated users to affect confidentiality and integrity, related to DBMS_CDC_PUBLISH.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database | =11.1.0.6 | |
Oracle Database | =10.1.0.5 | |
Oracle Database | =10.2.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3995 is considered a critical vulnerability affecting confidentiality and integrity in Oracle Database versions 10.1.0.5, 10.2.0.4, and 11.1.0.6.
To fix CVE-2008-3995, upgrade to a version of Oracle Database that is not affected by this vulnerability.
CVE-2008-3995 affects remote authenticated users of Oracle Database versions 10.1.0.5, 10.2.0.4, and 11.1.0.6 using the Change Data Capture component.
The potential impacts of CVE-2008-3995 include unauthorized access to sensitive data and corruption of data integrity.
There are no official workarounds for CVE-2008-3995; the recommended action is to apply the available patches or upgrade.