CVE-2019-2619: High severity ibm security identity manager vulnerability
An unspecified vulnerability in Oracle Database Server related to the Portable Clusterware component could allow an authenticated attacker to take control of the system.
Other sources
Vulnerability in the Portable Clusterware component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2, 12.2.0.1 and 18c. Easily exploitable vulnerability allows high privileged attacker having Grid Infrastructure User privilege with logon to the infrastructure where Portable Clusterware executes to compromise Portable Clusterware. While the vulnerability is in Portable Clusterware, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Portable Clusterware. CVSS 3.0 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this Oracle Database Server vulnerability?
The vulnerability ID of this Oracle Database Server vulnerability is CVE-2019-2619.
What component of Oracle Database Server is affected by this vulnerability?
The Portable Clusterware component of Oracle Database Server is affected by this vulnerability.
Which versions of Oracle Database Server are affected by this vulnerability?
Versions 11.2.0.4, 12.1.0.2, 12.2.0.1, and 18c of Oracle Database Server are affected by this vulnerability.
What is the severity of CVE-2019-2619?
The severity of CVE-2019-2619 is high with a CVSS score of 8.2.
How can I fix the vulnerability CVE-2019-2619?
To fix the vulnerability CVE-2019-2619, apply the necessary patches provided by Oracle.