Short Name |
DB:ORACLE:DBMS:EXP-EXT-UNSAFE
|
Severity |
High
|
Recommended |
No
|
Category |
DB
|
Keywords |
Oracle DBMS_EXPORT_EXTENSION Unsafe Command
|
Release Date |
2007/02/21
|
Update Number |
1213
|
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+
|
DB: Oracle DBMS_EXPORT_EXTENSION Unsafe Command
This signature detects attempts to exploit a known vulnerability against Oracle Database. A successful attack can lead to arbitrary code execution.
Extended Description
Oracle has released a Critical Patch Update advisory for January 2007 to address these vulnerabilities for supported releases. Earlier unsupported releases are likely to be affected by these issues as well.
The issues identified by the vendor affect all security properties of the Oracle products and present local and remote threats. Various levels of authorization are needed to leverage some of the issues, but other issues do not require any authorization. The most severe of the vulnerabilities could possibly expose affected computers to complete compromise.
Affected Products
- Apple Mac OS X 10.4.10
- Apple Mac OS X 10.4.11
- Apple Mac OS X Server 10.4.10
- Apple Mac OS X Server 10.4.11
- HP Oracle for OpenView 8.1.7
- HP Oracle for OpenView 9.1.01
- HP Oracle for OpenView 9.2
- HP Oracle for OpenView for Linux LTU
- Oracle Application Server 10g 9.0.4
- Oracle Application Server 10g 9.0.4 .1
- Oracle Application Server 10g 9.0.4 .2
- Oracle Application Server 10g 9.0.4 .3
- Oracle Application Server Release 2 10.1.2 .0.0
- Oracle Application Server Release 2 10.1.2 .0.1
- Oracle Application Server Release 2 10.1.2 .0.2
- Oracle Application Server Release 2 9.0.2 .3
- Oracle Developer Suite 10.1.2.0.2
- Oracle Developer Suite 6i
- Oracle Developer Suite 9.0.4 .3
- Oracle E-Business Suite 11.0.0
- Oracle E-Business Suite 11i 11.5.10
- Oracle E-Business Suite 11i 11.5.10 CU2
- Oracle E-Business Suite 11i 11.5.7
- Oracle E-Business Suite 11i 11.5.8
- Oracle E-Business Suite 11i 11.5.9
- Oracle Enterprise Manager Grid Control 10g 10.1.0 .3
- Oracle Enterprise Manager Grid Control 10g 10.1.0 .4
- Oracle Enterprise Manager Grid Control 10g 10.1.0 .5
- Oracle Enterprise Manager Grid Control 10g 10.2.0 .1
- Oracle Oracle10g Application Server 10.1.2
- Oracle Oracle10g Application Server 10.1.2 .0.1
- Oracle Oracle10g Application Server 10.1.2 .0.2
- Oracle Oracle10g Application Server 10.1.2 .1.0
- Oracle Oracle10g Application Server 10.1.2 .2.0
- Oracle Oracle10g Application Server 10.1.3 .0.0
- Oracle Oracle10g Application Server 10.1.3 .4.0
- Oracle Oracle10g Application Server 9.0.4 .1
- Oracle Oracle10g Application Server 9.0.4 .2
- Oracle Oracle10g Enterprise Edition 10.1.0 .0.2
- Oracle Oracle10g Enterprise Edition 10.1.0 .0.3
- Oracle Oracle10g Enterprise Edition 10.1.0 .0.3.1
- Oracle Oracle10g Enterprise Edition 10.1.0 .0.4
- Oracle Oracle10g Enterprise Edition 10.2.0 .1
- Oracle Oracle10g Enterprise Edition 10.2.0 .2
- Oracle Oracle10g Enterprise Edition 10.2.0 .3
- Oracle Oracle10g Personal Edition 10.1.0 .0.2
- Oracle Oracle10g Personal Edition 10.1.0 .0.3
- Oracle Oracle10g Personal Edition 10.1.0 .0.3.1
- Oracle Oracle10g Personal Edition 10.1.0 .0.4
- Oracle Oracle10g Personal Edition 10.2.0 .1
- Oracle Oracle10g Personal Edition 10.2.0 .2
- Oracle Oracle10g Personal Edition 10.2.0 .3
- Oracle Oracle10g Standard Edition 10.1.0 .0.2
- Oracle Oracle10g Standard Edition 10.1.0 .0.3
- Oracle Oracle10g Standard Edition 10.1.0 .0.3.1
- Oracle Oracle10g Standard Edition 10.1.0 .0.4
- Oracle Oracle10g Standard Edition 10.1.0 .0.5
- Oracle Oracle10g Standard Edition 10.1.0 .4.2
- Oracle Oracle10g Standard Edition 10.2.0.1
- Oracle Oracle10g Standard Edition 10.2.0 .2
- Oracle Oracle10g Standard Edition 10.2.0 .3
- Oracle Oracle8i Enterprise Edition 8.1.7.4.0
- Oracle Oracle8i Standard Edition 8.1.7 .4
- Oracle Oracle 9i Application Server Release 1 1.0.2 .2
- Oracle Oracle9i Enterprise Edition 9.0.1 .4
- Oracle Oracle9i Enterprise Edition 9.0.1 .5
- Oracle Oracle9i Enterprise Edition 9.0.1 .5 FIPS
- Oracle Oracle9i Enterprise Edition 9.2.0 .0.5
- Oracle Oracle9i Enterprise Edition 9.2.0.6.0
- Oracle Oracle9i Enterprise Edition 9.2.0.7.0
- Oracle Oracle9i Enterprise Edition 9.2.0.8.0
- Oracle Oracle9i Personal Edition 9.0.1 .4
- Oracle Oracle9i Personal Edition 9.0.1 .5
- Oracle Oracle9i Personal Edition 9.0.1 .5 FIPS
- Oracle Oracle9i Personal Edition 9.2.0 .0.5
- Oracle Oracle9i Personal Edition 9.2.0 .6
- Oracle Oracle9i Personal Edition 9.2.0 .7
- Oracle Oracle9i Personal Edition 9.2.0 .8
- Oracle Oracle9i Standard Edition 9.0.1 .4
- Oracle Oracle9i Standard Edition 9.0.1 .5
- Oracle Oracle9i Standard Edition 9.0.1 .5 FIPS
- Oracle Oracle9i Standard Edition 9.2.0 .0.5
- Oracle Oracle9i Standard Edition 9.2.0 .6
- Oracle Oracle9i Standard Edition 9.2.0 .7
- Oracle Oracle9i Standard Edition 9.2.0.8
- Oracle Oracle Identity Management 10g 10.1.4 .0.1
- Oracle PeopleSoft Enterprise PeopleTools 8.22
- Oracle PeopleSoft Enterprise PeopleTools 8.47
- Oracle PeopleSoft Enterprise PeopleTools 8.48
- Red Hat Red Hat Network Satellite Server 5.0.0
References