My Oracle Support Banner

Oracle Security Notification for Oracle Cloud Infrastructure (OCI) Identity Service vulnerability CVE-2022-21503 (Doc ID 2861245.1)

Last updated on NOVEMBER 30, 2023

Applies to:

Identity Cloud Service (IDCS) - Version N/A and later
OCI Compute - Version N/A to N/A [Release 1.0]
Information in this document applies to any platform.

Purpose

Oracle has identified security vulnerability CVE-2022-21503, which affects some credentials in the Oracle Cloud Infrastructure (OCI) Identity service. This vulnerability has received a CVSS base score of 4.9. Oracle has completed patching activities in response to this issue, but if you received a customer notification for CVE-2022-21503, you must take additional actions.

Scope

Oracle Cloud Infrastructure (OCI) Identity Service

Details

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Purpose
Scope
Details

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.