CVE-2011-2264Oracle Fusion Middleware vulnerability

4 documents4 sources
Severity
4.4MEDIUMNVD
EPSS
4.5%
top 10.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 21
Latest updateMay 17

Description

Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.2.0 and 8.3.5.0 allows context-dependent attackers to affect confidentiality, integrity, and availability via unknown vectors related to Outside In Filters. NOTE: the previous information was obtained from the July 2011 CPU. Oracle has not commented on claims from a reliable third party that this is a stack-based buffer overflow in the imcdr2.flt library for the CorelDRAW parser.

CVSS vector

AV:L/AC:M/C:P/I:P/A:PExploitability: 3.4 | Impact: 6.4

Affected Packages1 packages

NVDoracle/fusion_middleware8.3.2.0, 8.3.5.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-f345-3pvh-8x7v: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 82022-05-17
CVEList
CVE-2011-2264: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 82011-07-21
CVE-2011-2264 — Oracle Fusion Middleware vulnerability | cvebase