CVE-2020-35164

CWE-3853 documents3 sources
Severity
8.1HIGH
EPSS
0.7%
top 29.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 11
Latest updateJul 12

Description

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Timing Discrepancy Vulnerability.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:NExploitability: 1.4 | Impact: 5.2

Affected Packages7 packages

CVEListV5dell/dell_bsafe_crypto-c_micro_editionunspecified4.1.5 and 4.6
NVDoracle/database12.1.0.2, 19c, 21c+2
NVDoracle/weblogic12.2.1.3.0, 12.2.1.4.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-7wc7-w528-4fr7: Dell BSAFE Crypto-C Micro Edition, versions before 42022-07-12
CVEList
CVE-2020-35164: Dell BSAFE Crypto-C Micro Edition, versions before 42022-07-11