CVE-2020-29506: Critical severity dell bsafe crypto-c micro edition vulnerability
Published Jul 11, 2022
·Updated
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
Affected Software
11 affected components
Dell Bsafe Crypto-c-micro-edition<4.1.5
Dell Bsafe Micro-edition-suite<4.5.2
Oracle Database=12.1.0.2
Oracle Database=19c
Oracle Database=21c
Oracle HTTP Server=12.2.1.3.0
Oracle HTTP Server=12.2.1.4.0
Oracle Security Service=12.2.1.3.0
Oracle Security Service=12.2.1.4.0
Oracle Weblogic Server Proxy Plug-in=12.2.1.3.0
Oracle Weblogic Server Proxy Plug-in=12.2.1.4.0
Remediation
Patch Available
Event History
Jul 11, 2022
CVE Published
via MITRE·07:25 PM
Data Sourced
via MITRE·07:25 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Dell BSAFE vulnerability?
The vulnerability ID for this Dell BSAFE vulnerability is CVE-2020-29506.
2
What is the severity of CVE-2020-29506?
The severity of CVE-2020-29506 is critical with a CVSS score of 9.8.
3
Which versions of Dell BSAFE Crypto-C Micro Edition are affected?
Versions before 4.1.5 of Dell BSAFE Crypto-C Micro Edition are affected.
4
Which versions of Dell BSAFE Micro Edition Suite are affected?
Versions before 4.5.2 of Dell BSAFE Micro Edition Suite are affected.
5
Are Oracle databases affected by this vulnerability?
Yes, Oracle databases with versions 12.1.0.2, 19c, and 21c are affected.