DB: Oracle DBMS Overflow

This signature detects attempts to exploit a known vulnerability in the Oracle Database Server Package. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server, typically root.

Extended Description

Oracle has released the July 2008 Critical Patch Update that addresses 44 new vulnerabilities affecting the following products: Oracle Database Oracle TimesTen In-Memory Database Oracle Application Server Oracle E-Business Suite and Application Oracle Enterprise Manager Oracle PeopleSoft Enterprise Oracle BEA Products

Affected Products

Bea_systems weblogic_server

Short Name
DB:ORACLE:TNS:DBMS-OF
Severity
Minor
Recommended
False
Recommended Action
None
Category
DB
Keywords
CVE-2006-0283 CVE-2008-2607 DBMS Oracle Overflow bid:30177
Release Date
11/26/2008
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

srx-branch-12.3

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx-12.3

vmx-19.3

srx-12.3

Sigpack Version
3729
False Positive
Unknown
Vendors

Oracle

Hp

Bea_systems

CVSS Score

6.5

10.0

Found a potential security threat?