CVE-2020-35168

MEDIUM

Dell BSAFE <4.1.5-4.6 - Use After Free

Title source: llm
STIX 2.1

Description

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Timing Discrepancy Vulnerability.

Scores

CVSS v3 4.7
EPSS 0.0014
EPSS Percentile 34.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-311
Status published
Products (11)
dell/bsafe_crypto-c-micro-edition < 4.1.5
dell/bsafe_micro-edition-suite < 4.6
oracle/database 12.1.0.2
oracle/database 19c
oracle/database 21c
oracle/http_server 12.2.1.3.0
oracle/http_server 12.2.1.4.0
oracle/security_service 12.2.1.3.0
oracle/security_service 12.2.1.4.0
oracle/weblogic_server_proxy_plug-in 12.2.1.3.0
... and 1 more
Published Jul 11, 2022
Tracked Since Feb 18, 2026