cbcvebase.
CVE-2017-3617
published 2017-04-24

CVE-2017-3617: Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version that is affected is Prior to 6.2.32. Difficult to exploit vulnerability…

high7CVSS 3.1
AVLACHPRNUIRSUCHIHAH
Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version that is affected is Prior to 6.2.32. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Data Store executes to compromise Data Store. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Data Store. CVSS 3.0 Base Score 7.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
msrcazl3_libdb_5.3.28-7_on_azure_linux_3.0
msrcazl3_libdb_5.3.28-9_on_azure_linux_3.0
msrccbl2_libdb_5.3.28-7_on_cbl_mariner_2.0
msrccbl_mariner_1.0_arm
msrccbl_mariner_1.0_x64
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64
msrccm1_libdb_5.3.28-5_on_cbl_mariner_1.0
msrclibdb-5.3.28-5.cm1.aarch64.rpm
msrclibdb-5.3.28-5.cm1.x86_64.rpm
msrclibdb-5.3.28-7.cm2.aarch64.rpm
msrclibdb-5.3.28-7.cm2.x86_64.rpm
msrclibdb-5.3.28-8.azl3.aarch64.rpm
msrclibdb-5.3.28-8.azl3.x86_64.rpm
msrclibdb-debuginfo-5.3.28-5.cm1.aarch64.rpm
msrclibdb-debuginfo-5.3.28-5.cm1.x86_64.rpm
msrclibdb-debuginfo-5.3.28-7.cm2.aarch64.rpm
msrclibdb-debuginfo-5.3.28-7.cm2.x86_64.rpm
msrclibdb-devel-5.3.28-5.cm1.aarch64.rpm
msrclibdb-devel-5.3.28-5.cm1.x86_64.rpm
msrclibdb-devel-5.3.28-7.cm2.aarch64.rpm
msrclibdb-devel-5.3.28-7.cm2.x86_64.rpm
msrclibdb-devel-5.3.28-8.azl3.aarch64.rpm
msrclibdb-devel-5.3.28-8.azl3.x86_64.rpm
msrclibdb-docs-5.3.28-5.cm1.aarch64.rpm

CVSS provenance

nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH