CVE-2020-35164

MEDIUM

Dell BSAFE <4.1.5-4.6 - Use After Free

Title source: llm
STIX 2.1

Description

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Timing Discrepancy Vulnerability.

Scores

CVSS v3 6.7
EPSS 0.0067
EPSS Percentile 71.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-385
Status published
Products (11)
dell/bsafe_crypto-c-micro-edition < 4.1.5
dell/bsafe_micro-edition-suite < 4.6
oracle/database 12.1.0.2
oracle/database 19c
oracle/database 21c
oracle/http_server 12.2.1.3.0
oracle/http_server 12.2.1.4.0
oracle/security_service 12.2.1.3.0
oracle/security_service 12.2.1.4.0
oracle/weblogic_server_proxy_plug-in 12.2.1.3.0
... and 1 more
Published Jul 11, 2022
Tracked Since Feb 18, 2026