First published: Mon Jul 11 2022(Updated: )
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Bsafe Crypto-c-micro-edition | <4.1.5 | |
Dell Bsafe Micro-edition-suite | <4.5.2 | |
Oracle Database | =12.1.0.2 | |
Oracle Database | =19c | |
Oracle Database | =21c | |
Oracle HTTP Server | =12.2.1.3.0 | |
Oracle HTTP Server | =12.2.1.4.0 | |
Oracle Security Service | =12.2.1.3.0 | |
Oracle Security Service | =12.2.1.4.0 | |
Oracle Weblogic Server Proxy Plug-in | =12.2.1.3.0 | |
Oracle Weblogic Server Proxy Plug-in | =12.2.1.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Dell BSAFE vulnerability is CVE-2020-29506.
The severity of CVE-2020-29506 is critical with a CVSS score of 9.8.
Versions before 4.1.5 of Dell BSAFE Crypto-C Micro Edition are affected.
Versions before 4.5.2 of Dell BSAFE Micro Edition Suite are affected.
Yes, Oracle databases with versions 12.1.0.2, 19c, and 21c are affected.