Improper input validation in Oracle Communications User Data Repository - CVE-2024-4227
Published: April 16, 2025
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Platform (gSOAP) component in Oracle Communications User Data Repository. A remote non-authenticated attacker can exploit this vulnerability to perform a denial of service (DoS) attack.
Affected software
Oracle Communications Policy Management
openEuler
gsoap
gsoap-debuginfo
gsoap-debugsource
gsoap-devel
gsoap-doc
How to mitigate CVE-2024-4227
gsoap-debuginfo - update to 2.8.139-1
gsoap-debugsource - update to 2.8.139-1
gsoap-devel - update to 2.8.139-1
gsoap-doc - update to 2.8.139-1