Description
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5.0 allows local users to affect confidentiality, integrity, and availability, related to File ID SDK. NOTE: the previous information was obtained from the April 2011 CPU. Oracle has not commented on claims from a reliable third party that this issue is in (a) sccut.dll or (b) libsc_ut.so in Outside In 8.3.5.x through 8.3.5.5684, as used when using the CAB file identification functionality to parse OneNote (.onepkg) files and other formats.
References (7)
Core 7
Core References
Patch, Vendor Advisory x_refsource_confirm
http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html
Various Sources vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20111026-csa
Various Sources x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21660640
Vendor Advisory x_refsource_confirm
http://www.novell.com/support/search.do?cmd=displayKC&docType=kc&externalId=7009213&sliceId=1&docTypeID=DT_TID_1_1&dialogID=268451045&stateId=0%200%20268449309
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/44295
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/47437
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/520721
Scores
EPSS
0.0039
EPSS Percentile
31.3%
Details
Status
published
Products (1)
oracle/fusion_middleware
8.3.5.0
Published
Apr 20, 2011
Tracked Since
Feb 18, 2026