CVE-2009-1995: Medium severity Oracle Database Server vulnerability
Published Oct 22, 2009
·Updated
Unspecified vulnerability in the Advanced Queuing component in Oracle Database 10.2.0.4 and 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMSAQINV.
Affected Software
2 affected components
Oracle Database Server=10.2.0.4
Oracle Database Server=11.1.0.7
Event History
Oct 22, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-1995?
CVE-2009-1995 has a medium severity level, affecting confidentiality and integrity for remote authenticated users.
2
How do I fix CVE-2009-1995?
To fix CVE-2009-1995, upgrade your Oracle Database to a version that is not vulnerable, specifically to one beyond 11.1.0.7.
3
What versions of Oracle Database are affected by CVE-2009-1995?
CVE-2009-1995 affects Oracle Database versions 10.2.0.4 and 11.1.0.7.
4
Who is impacted by CVE-2009-1995?
Remote authenticated users of the affected Oracle Database versions are impacted by CVE-2009-1995.
5
What component is related to CVE-2009-1995?
CVE-2009-1995 is related to the Advanced Queuing component within Oracle Database.