Vulnerability in the Oracle Database Portable Clusterware component of Oracle Database Server. Supported versions that are affected are 19.3-19.23 and 21.3-21.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via DNS to compromise Oracle Database Portable Clusterware. While the vulnerability is in Oracle Database Portable Clusterware, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Database Portable Clusterware. CVSS 3.1 Base Score 5.8 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L).
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.oracle.com/security-alerts/cpujul2024.html |
![]() ![]() ![]() |
History
Wed, 18 Jun 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Oracle
Oracle database Server |
|
CPEs | cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:* | |
Vendors & Products |
Oracle
Oracle database Server |
Thu, 29 Aug 2024 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-400 |

Status: PUBLISHED
Assigner: oracle
Published: 2024-07-16T22:39:52.158Z
Updated: 2024-08-29T19:26:29.803Z
Reserved: 2023-12-07T22:28:10.681Z
Link: CVE-2024-21126

Updated: 2024-08-01T22:13:42.700Z

Status : Analyzed
Published: 2024-07-16T23:15:12.177
Modified: 2025-06-18T20:23:07.713
Link: CVE-2024-21126

No data.