CVE-2016-5498: Infoleak
Published Oct 25, 2016
·Updated
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5499.
Affected Software
2 affected components
Oracle Database Server=11.2.0.4
Oracle Database Server=12.1.0.2
Remediation
Event History
Oct 25, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5498?
CVE-2016-5498 has not been assigned a specific CVSS score, but it affects confidentiality for local users in affected versions of Oracle Database.
2
How do I fix CVE-2016-5498?
To remediate CVE-2016-5498, apply the security patches provided by Oracle for versions 11.2.0.4 and 12.1.0.2.
3
Which Oracle Database versions are affected by CVE-2016-5498?
CVE-2016-5498 affects Oracle Database Server versions 11.2.0.4 and 12.1.0.2.
4
Can CVE-2016-5498 be exploited remotely?
CVE-2016-5498 is a local vulnerability, meaning exploitation requires local access to the system.
5
What components of Oracle Database does CVE-2016-5498 affect?
CVE-2016-5498 affects the RDBMS Security component within the Oracle Database Server.