CVE-2012-0571
published 2012-05-03CVE-2012-0571: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0 through 10.5.0 and 11.0.0 through…
PriorityP416medium4CVSS 2.0
AVNACLAuSCNIPAN
EPSS
1.44%
70.1th percentile
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0 through 10.5.0 and 11.0.0 through 11.4.0 allows remote authenticated users to affect integrity via unknown vectors related to Core, a different vulnerability than CVE-2012-0544.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | financial_services_software | — | — |
| oracle | financial_services_software | — | — |
| oracle | financial_services_software | — | — |
| oracle | financial_services_software | — | — |
| oracle | financial_services_software | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
vendor_redhat4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6cfr-89cj-jf9q: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10
ghsa_unreviewed·2022-05-04·CVSS 4.0
CVE-2012-0544 [MEDIUM] GHSA-6cfr-89cj-jf9q: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0 through 10.5.0 and 11.0.0 through 11.4.0 allows remote authenticated users to affect integrity via unknown vectors related to Core, a different vulnerability than CVE-2012-0571.
GHSA
GHSA-7w39-2c97-4p7p: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10
ghsa_unreviewed·2022-05-04·CVSS 3.5
CVE-2012-0571 [LOW] GHSA-7w39-2c97-4p7p: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0 through 10.5.0 and 11.0.0 through 11.4.0 allows remote authenticated users to affect integrity via unknown vectors related to Core, a different vulnerability than CVE-2012-0544.
Red Hat
kernel: kvm: irqchip_in_kernel() and vcpu->arch.apic inconsistency
vendor_redhat·2012-02-07·CVSS 4.9
CVE-2012-1601 [MEDIUM] kernel: kvm: irqchip_in_kernel() and vcpu->arch.apic inconsistency
kernel: kvm: irqchip_in_kernel() and vcpu->arch.apic inconsistency
The KVM implementation in the Linux kernel before 3.3.6 allows host OS users to cause a denial of service (NULL pointer dereference and host OS crash) by making a KVM_CREATE_IRQCHIP ioctl call after a virtual CPU already exists.
Statement: This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise MRG as they did not provide support for the KVM subsystem. This has been addressed in Red Hat Enterprise Linux 6 via https://rhn.redhat.com/errata/RHSA-2012-0571.html. This has been addressed in Red Hat Enterprise Linux 5 via RHSA-2012:0676 https://rhn.redhat.com/errata/RHSA-2012-0676.html.
Package: kvm (Red Hat Enterprise Linux 5) - Affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) -
Red Hat
kernel: jbd2: unmapped buffer with _Unwritten or _Delay flags set can lead to DoS
vendor_redhat·2012-01-25·CVSS 4.9
CVE-2011-4086 [MEDIUM] kernel: jbd2: unmapped buffer with _Unwritten or _Delay flags set can lead to DoS
kernel: jbd2: unmapped buffer with _Unwritten or _Delay flags set can lead to DoS
The journal_unmap_buffer function in fs/jbd2/transaction.c in the Linux kernel before 3.3.1 does not properly handle the _Delay and _Unwritten buffer head states, which allows local users to cause a denial of service (system crash) by leveraging the presence of an ext4 filesystem that was mounted with a journal.
Statement: This has been addressed in Red Hat Enterprise Linux 5, 6, and Red Hat Enterprise MRG via https://rhn.redhat.com/errata/RHSA-2012-0107.html, https://rhn.redhat.com/errata/RHSA-2012-0571.html, and https://rhn.redhat.com/errata/RHSA-2012-0670.html. Red Hat Enterprise Linux 4 is now in Production 3 of the maintenance life-cycle, https://access.redhat.com/support/policy/updates/errata/, theref
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/48831http://www.mandriva.com/security/advisories?name=MDVSA-2013:150http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.htmlhttp://www.securityfocus.com/bid/53103http://www.securitytracker.com/id?1026953http://secunia.com/advisories/48831http://www.mandriva.com/security/advisories?name=MDVSA-2013:150http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.htmlhttp://www.securityfocus.com/bid/53103http://www.securitytracker.com/id?1026953
2012-05-03
Published