CVE-2008-5445
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers to affect availability via unknown vectors.
Does this matter?
Lower severity and a low EPSS score (2.58%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers to affect availability via unknown vectors. NOTE: the previous information was obtained from the January 2009 CPU. Oracle has not commented on reliable researcher claims that this issue is a denial of service in observiced.exe via malformed private Protocol data that triggers a NULL pointer dereference.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 2.58% probability · 84th percentile
- CISA KEV
- Not listed
- Affected
- oracle/secure backup
- Source
- secalert_us@oracle.com
References
- http://secunia.com/advisories/33525Vendor Advisory
- http://www.fortiguardcenter.com/advisory/FGA-2009-02.html
- http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html
- http://www.securityfocus.com/archive/1/500113/100/0/threaded
- http://www.securityfocus.com/bid/33177
- http://www.vupen.com/english/advisories/2009/0115Vendor Advisory
- http://secunia.com/advisories/33525Vendor Advisory
- http://www.fortiguardcenter.com/advisory/FGA-2009-02.html
- http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html
- http://www.securityfocus.com/archive/1/500113/100/0/threaded
- http://www.securityfocus.com/bid/33177
- http://www.vupen.com/english/advisories/2009/0115Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.