CVE-2016-3609: Critical severity oracle database vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in the OJVM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
Affected Software
3 affected components
Oracle Database=11.2.0.4
Oracle Database=12.1.0.1
Oracle Database=12.1.0.2
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3609?
The severity of CVE-2016-3609 is critical as it affects confidentiality, integrity, and availability for Oracle Database Server components.
2
How do I fix CVE-2016-3609?
To fix CVE-2016-3609, apply the latest patches or updates provided by Oracle for affected database versions.
3
Who is affected by CVE-2016-3609?
CVE-2016-3609 affects remote authenticated users of Oracle Database Server versions 11.2.0.4, 12.1.0.1, and 12.1.0.2.
4
What components are impacted by CVE-2016-3609?
CVE-2016-3609 impacts the OJVM component within the Oracle Database Server.
5
Can CVE-2016-3609 be exploited remotely?
Yes, CVE-2016-3609 can be exploited remotely by authenticated users.