CVE-2020-14741: Medium severity oracle database vulnerability
Vulnerability in the Database Filesystem component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2 and 12.2.0.1. Easily exploitable vulnerability allows high privileged attacker having Resource, Create Table, Create View, Create Procedure, Dbfsrole privilege with network access via Oracle Net to compromise Database Filesystem. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Database Filesystem. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-14741?
CVE-2020-14741 is classified as a high severity vulnerability.
How do I fix CVE-2020-14741?
To fix CVE-2020-14741, apply the latest patch provided by Oracle for the affected database versions.
What are the affected versions for CVE-2020-14741?
CVE-2020-14741 affects Oracle Database versions 11.2.0.4, 12.1.0.2, and 12.2.0.1.
Who is impacted by CVE-2020-14741?
High privileged attackers with specific database privileges such as Resource and Dbfs_role are impacted by CVE-2020-14741.
What component is affected by CVE-2020-14741?
CVE-2020-14741 affects the Database Filesystem component of Oracle Database Server.