CVE-2014-2478: Low severity oracle database vulnerability
Published Oct 15, 2014
·Updated
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote attackers to affect confidentiality via unknown vectors.
Affected Software
4 affected components
Oracle Database Server=11.1.0.7
Oracle Database Server=11.2.0.3
Oracle Database Server=11.2.0.4
Oracle Database Server=12.1.0.1
Remediation
Event History
Oct 15, 2014
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-2478?
CVE-2014-2478 is classified as a high-severity vulnerability affecting Oracle Database Server.
2
How do I fix CVE-2014-2478?
To remediate CVE-2014-2478, apply the latest security patches provided by Oracle for the affected database versions.
3
Which versions of Oracle Database are affected by CVE-2014-2478?
CVE-2014-2478 impacts Oracle Database Server versions 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1.
4
What type of attack does CVE-2014-2478 allow?
CVE-2014-2478 allows remote attackers to potentially compromise the confidentiality of the affected Oracle Database.
5
Are there known exploits for CVE-2014-2478?
As of now, there are no publicly available exploits specifically targeting CVE-2014-2478.