CVE-2011-0880
published 2011-07-20CVE-2011-0880: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect…
PriorityP429medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
1.74%
75.4th percentile
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2011-0832 and CVE-2011-0835.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | database_server | — | — |
| oracle | database_server | — | — |
| oracle | database_server | — | — |
CVSS provenance
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5hvv-f6h5-f247: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11
ghsa_unreviewed·2022-05-17·CVSS 6.0
CVE-2011-0835 [MEDIUM] GHSA-5hvv-f6h5-f247: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2011-0832 and CVE-2011-0880.
GHSA
GHSA-3gv3-r9m2-fqj2: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11
ghsa_unreviewed·2022-05-17·CVSS 6.5
CVE-2011-0832 [MEDIUM] GHSA-3gv3-r9m2-fqj2: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2011-0835 and CVE-2011-0880.
GHSA
GHSA-27q8-895c-wpmq: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11
ghsa_unreviewed·2022-05-17·CVSS 6.0
CVE-2011-0880 [MEDIUM] GHSA-27q8-895c-wpmq: Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2011-0832 and CVE-2011-0835.
Red Hat
xml: xerces-c hash table collisions CPU usage DoS (oCERT-2011-003)
vendor_redhat·2014-07-08·CVSS 7.5
CVE-2012-0880 [HIGH] CWE-407 xml: xerces-c hash table collisions CPU usage DoS (oCERT-2011-003)
xml: xerces-c hash table collisions CPU usage DoS (oCERT-2011-003)
Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.
Statement: This issue affects the versions of xerces as shipped with Red Hat Enterprise Linux 6. Red Hat Product Security has rated this issue as having Moderate security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: xerces-c (Red Hat Enterprise Linux 6) - Out of support scope
Package: xerces-c (Red Hat Enterprise MRG 1) - Fix deferred
Package: xerces-c (Red Hat Enterprise MRG 2) - Fix deferred
No detection rules found.
No public exploits indexed.
2011-07-20
Published