First published: Tue Jan 16 2024(Updated: )
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core). The supported version that is affected is 8.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle ZFS Storage Appliance Kit executes to compromise Oracle ZFS Storage Appliance Kit. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle ZFS Storage Appliance Kit. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Storage Cloud Software Appliance | =8.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-20959 is classified as a high severity vulnerability that can be easily exploited.
CVE-2024-20959 affects Oracle ZFS Storage Appliance Kit version 8.8.
To fix CVE-2024-20959, it is recommended to apply the latest patches provided by Oracle for version 8.8.
CVE-2024-20959 can be exploited by attackers with high privileges who have logon access to the infrastructure.
CVE-2024-20959 could allow an attacker to compromise the Oracle ZFS Storage Appliance Kit system, posing significant risks to data integrity and confidentiality.