First published: Mon Jul 11 2022(Updated: )
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Improper Input Validation Vulnerability.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell BSAFE Crypto-C Micro Edition | <4.1.5 | |
Dell BSAFE Micro Edition Suite | <4.6 | |
Oracle Database | =12.1.0.2 | |
Oracle Database | =19c | |
Oracle Database | =21c | |
Oracle HTTP Server | =12.2.1.3.0 | |
Oracle HTTP Server | =12.2.1.4.0 | |
Oracle Security Service | =12.2.1.3.0 | |
Oracle Security Service | =12.2.1.4.0 | |
Oracle WebLogic Server Proxy Plug-in | =12.2.1.3.0 | |
Oracle WebLogic Server Proxy Plug-in | =12.2.1.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-29508 is a vulnerability in Dell BSAFE Crypto-C Micro Edition versions before 4.1.5 and Dell BSAFE Micro Edition Suite versions before 4.6 that allows improper input validation.
The severity of CVE-2020-29508 is critical with a CVSS score of 9.8.
Dell BSAFE Crypto-C Micro Edition versions before 4.1.5 and Dell BSAFE Micro Edition Suite versions before 4.6 are affected by CVE-2020-29508.
To fix CVE-2020-29508, it is recommended to update Dell BSAFE Crypto-C Micro Edition to version 4.1.5 or later and Dell BSAFE Micro Edition Suite to version 4.6 or later.
You can find more information about CVE-2020-29508 at the following references: [Dell Security Advisory DSA-2020-286](https://www.dell.com/support/kbdoc/en-us/000181115/dsa-2020-286-dell-bsafe-crypto-c-micro-edition-4-1-5-and-dell-bsafe-micro-edition-suite-4-6-multiple-security-vulnerabilities) and [Oracle Security Alerts - July 2022](https://www.oracle.com/security-alerts/cpujul2022.html).