Vulnerability Name: | CVE-2015-1829 (CCN-103204) | ||||||||
Assigned: | 2015-05-15 | ||||||||
Published: | 2015-05-15 | ||||||||
Updated: | 2016-11-30 | ||||||||
Summary: | Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 10.1.3.5, 11.1.1.7, 11.1.1.9, 12.1.2.0, and 12.1.3.0 allows remote attackers to affect availability via unknown vectors related to Web Listener. Per Advisory: <a href="http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html">The fix also addresses CVE-2015-3183.</a> | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2015-1829 Source: CONFIRM Type: UNKNOWN http://www.apache.org/dist/apr/Announcement1.x.html Source: CCN Type: IBM Security Bulletin 1959081 Potential denial of service may affect IBM HTTP Server on Windows (CVE-2015-1829) Source: CCN Type: IBM Security Bulletin 1960364 Potential denial of service may affect IBM WebSphere Application Server shipped with IBM Tivoli Network Performance Manager (CVE-2015-1829) Source: CCN Type: IBM Security Bulletin 1960983 Potential denial of service may affect IBM HTTP Server on Windows (CVE-2015-1829), impacting Asset and Service Management Source: CCN Type: IBM Security Bulletin 1970056 IBM Tivoli Monitoring (CVE-2015-1829, CVE-2015-3183, CVE-2015-1283, CVE-2015-4947, CVE-2015-2808) Source: CCN Type: Oracle Critical Patch Update Advisory - October 2015 Oracle Critical Patch Update Advisory - October 2015 Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html Source: BID Type: UNKNOWN 75164 Source: CCN Type: BID-75164 IBM HTTP Server CVE-2015-1829 Denial of Service Vulnerability Source: SECTRACK Type: UNKNOWN 1032617 Source: XF Type: UNKNOWN apache-portable-cve20151829-dos(103204) Source: CCN Type: Apache Web site Apache Portable Runtime library 1.5.2 Released | ||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
BACK |