Skip navigation

Multiple Vulnerabilities in Oracle Database Server



Reported January 18, 2005, by NGSSoftware

VERSIONS AFFECTED

         All releases of versions 10g and 9i

DESCRIPTION

Multiple vulnerabilities have been discovered in Oracle Database Server. The vulnerabilities include "PL/SQL" injection and an unchecked buffer, which could allow an overflow to occur. The vulnerabilities could allow users to gain adminstrator privileges on an affect server.


VENDOR RESPONSE

Oracle has issued patches to correct these problems which can be obtained at the company's MetaLink Web site.

CREDIT
Discovered by Next Generation Security Software

TAGS: Security
Hide comments

Comments

  • Allowed HTML tags: <em> <strong> <blockquote> <br> <p>

Plain text

  • No HTML tags allowed.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Lines and paragraphs break automatically.
Publish