|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-2264
The original article can be found at: http://www.securityfocus.com/bid/48766
|
| |
Vulnerable Systems:
* Oracle Fusion Middleware 8.3.2.0
* Oracle Fusion Middleware8.3.5.0
Oracle Outside In is prone to a remote code-execution vulnerability.
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious '.cdr' file.
Successful exploits will result in the execution of arbitrary code in the context of the application using the affected library. Failed exploit attempts may result in a denial-of-service condition.
Vendor Status:
Oracle as issued an update for this vulnerablity
Patch Availability:
http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html
CVE Information:
CVE-2011-2264
Disclosure Timeline:
2011-July-19 Rev 1. Initial Release
|
|
|