CVE-2013-5791: Buffer Overflow
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.4.1 allows context-dependent attackers to affect availability via unknown vectors related to Outside In Filters. NOTE: the previous information is from the October 2013 CPU. Oracle has not commented on claims from a third party that the issue is a stack-based buffer overflow in the Microsoft Access 1.x parser in vsacs.dll before 8.4.0.108 and before 8.4.1.52, which allows attackers to execute arbitrary code via a long field (aka column) name.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5791?
The severity of CVE-2013-5791 is not explicitly defined, but it allows context-dependent attackers to impact the availability of affected systems.
How do I fix CVE-2013-5791?
To fix CVE-2013-5791, users should update to the latest version of Oracle Fusion Middleware provided by Oracle that addresses this vulnerability.
What versions of Oracle Fusion Middleware are affected by CVE-2013-5791?
CVE-2013-5791 affects Oracle Fusion Middleware versions 8.4.0 and 8.4.1.
Can CVE-2013-5791 lead to a denial of service?
Yes, CVE-2013-5791 has the potential to affect the availability of the system, which could lead to a denial of service.
Is there a workaround for CVE-2013-5791?
No specific workarounds are documented for CVE-2013-5791, hence applying the relevant updates is recommended.