CVE-2011-0881Inefficient Algorithmic Complexity in Oracle Database Server

Severity
4.3MEDIUMNVD
EPSS
0.4%
top 38.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 20
Latest updateMay 17

Description

Unspecified vulnerability in the EMCTL component in Oracle Database Server 10.2.0.3, 10.2.0.4, and 11.1.0.7, and Oracle Enterprise Manager Grid Control 10.1.0.6, allows remote attackers to affect integrity via unknown vectors.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages2 packages

NVDoracle/database_server10.2.0.3, 10.2.0.4, 11.1.0.7+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-f88x-pmr8-x5x7: Unspecified vulnerability in the EMCTL component in Oracle Database Server 102022-05-17
CVEList
CVE-2011-0881: Unspecified vulnerability in the EMCTL component in Oracle Database Server 102011-07-20

📋Vendor Advisories

2
Red Hat
xml: xerces-j2 hash table collisions CPU usage DoS (oCERT-2011-003)2014-07-08
Red Hat
jabberd: DoS via the XML "billion laughs attack"2011-05-31

💬Community

2
Bugzilla
CVE-2011-4966 freeradius: does not respect expired passwords when using the unix module2012-11-21
Bugzilla
CVE-2012-0881 xml: xerces-j2 hash table collisions CPU usage DoS (oCERT-2011-003)2012-02-03
CVE-2011-0881 — Inefficient Algorithmic Complexity | cvebase