CVE-2020-35167: Dell Bsafe Crypto-C-Micro-Edition

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Timing Discrepancy Vulnerability.

Affected products

  • Dell Bsafe Crypto-C-Micro-Edition: before 4.1.5 (fixed in 4.1.5)
  • Dell Bsafe Micro-Edition-Suite: before 4.6 (fixed in 4.6)
  • Oracle Database: version 12.1.0.2 only; version 19c only; version 21c only
  • Oracle HTTP Server: version 12.2.1.3.0 only; version 12.2.1.4.0 only
  • Oracle Security Service: version 12.2.1.3.0 only; version 12.2.1.4.0 only
  • Oracle WebLogic Server Proxy Plug-In: version 12.2.1.3.0 only; version 12.2.1.4.0 only

Published 2022-07-11. Last modified 2026-06-17.