First published: Thu Jul 21 2016(Updated: )
Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 11.1.1.9 and 12.1.3.0 allows remote attackers to affect confidentiality via vectors related to SSL/TLS Module.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle HTTP Server | =11.1.1.9 | |
Oracle HTTP Server | =12.1.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-3482 is classified as a medium severity vulnerability affecting the Oracle HTTP Server.
To mitigate CVE-2016-3482, update the Oracle HTTP Server to the latest patched version provided by Oracle.
CVE-2016-3482 affects Oracle HTTP Server versions 11.1.1.9 and 12.1.3.0.
Yes, CVE-2016-3482 can potentially allow remote attackers to affect confidentiality through the SSL/TLS module.
Currently, the best recommendation for CVE-2016-3482 is to apply the available patches, as no specific workarounds have been documented.