Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

DB:ORACLE:SYS:KUPW-WORKER

Severity

High

Recommended

No

Recommended Action

Drop

Category

DB

Keywords

Oracle SYS.KUPW-WORKER Malformed Command

Release Date

2006/08/17

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

DB: Oracle SYS.KUPW-WORKER Malformed Command


This signature detects attempts to exploit a known vulnerability against Oracle Server. A successful attack can lead to arbitrary code execution.

Extended Description

Various Oracle applications including Oracle Database, Oracle Application Server, Oracle Collaboration Suite, Oracle E-Business Suite and Applications, Oracle Pharmaceutical Applications, Oracle Enterprise Manager, Oracle PeopleSoft Enterprise, and JD Edwards EnterpriseOne are affected by multiple vulnerabilities. Oracle has released a Critical Patch Update advisory for July 2006 to address these vulnerabilities. This Critical Patch Update addresses the vulnerabilities for supported releases. Earlier unsupported releases are likely to be affected by the issues as well. These issues will be split into individual records when more information has been disclosed.

Affected Products

  • HP HP-UX B.11.11
  • HP HP-UX B.11.23
  • Oracle Application Server 10g 9.0.4
  • Oracle Application Server 10g 9.0.4 .1
  • Oracle Application Server 10g 9.0.4 .2
  • Oracle Application Server 10g 9.0.4 .3
  • Oracle Application Server Portal 10.1.4 .0.0
  • Oracle Collaboration Suite Release 1 10.1.2
  • Oracle Collaboration Suite Release 2 9.0.4 .2
  • Oracle Developer Suite 9.0.4 .2
  • Oracle E-Business Suite 11.0.0
  • Oracle E-Business Suite 11i 11.5.10
  • Oracle E-Business Suite 11i 11.5.10 CU2
  • Oracle E-Business Suite 11i 11.5.7
  • Oracle E-Business Suite 11i 11.5.8
  • Oracle E-Business Suite 11i 11.5.9
  • Oracle Enterprise Manager Grid Control 10g 10.2.0 .1
  • Oracle JD Edwards EnterpriseOne 8.95
  • Oracle JD Edwards EnterpriseOne 8.95.0 B1
  • Oracle JD Edwards EnterpriseOne 8.95.0 F1
  • Oracle JD Edwards EnterpriseOne 8.95.J1
  • Oracle JD Edwards EnterpriseOne 8.96
  • Oracle Oracle10g Application Server 10.1.2
  • Oracle Oracle10g Application Server 10.1.3 .0.0
  • Oracle Oracle10g Application Server 9.0.4 .0
  • Oracle Oracle10g Application Server 9.0.4 .1
  • Oracle Oracle10g Application Server 9.0.4 .2
  • Oracle Oracle10g Enterprise Edition 10.1.0 .0.3
  • Oracle Oracle10g Enterprise Edition 10.1.0 .0.4
  • Oracle Oracle10g Enterprise Edition 10.2.0 .1
  • Oracle Oracle10g Enterprise Edition 10.2.0 .2
  • Oracle Oracle10g Enterprise Edition 9.0.4 .0
  • Oracle Oracle10g Personal Edition 10.1.0 .0.3
  • Oracle Oracle10g Personal Edition 10.1.0 .0.4
  • Oracle Oracle10g Personal Edition 10.2.0 .1
  • Oracle Oracle10g Personal Edition 10.2.0 .2
  • Oracle Oracle10g Personal Edition 9.0.4 .0
  • Oracle Oracle10g Standard Edition 10.1.0 .0.3
  • Oracle Oracle10g Standard Edition 10.1.0 .0.4
  • Oracle Oracle10g Standard Edition 10.1.0 .0.5
  • Oracle Oracle10g Standard Edition 10.1.0 .4.2
  • Oracle Oracle10g Standard Edition 10.2.0.1
  • Oracle Oracle10g Standard Edition 10.2.0 .2
  • Oracle Oracle10g Standard Edition 9.0.4 .0
  • Oracle Oracle8 8.0.6
  • Oracle Oracle8 8.0.6 .3
  • Oracle Oracle9i Application Server 1.0.2 .2
  • Oracle Oracle9i Application Server 9.0.2 .3
  • Oracle Oracle9i Application Server 9.0.3 .1
  • Oracle Oracle9i Application Server 9.2.0 .0.6
  • Oracle Oracle9i Application Server 9.2.0 .0.7
  • Oracle Oracle9i Enterprise Edition 8.1.7
  • Oracle Oracle9i Enterprise Edition 9.0.1 .4
  • Oracle Oracle9i Enterprise Edition 9.0.1 .5
  • Oracle Oracle9i Enterprise Edition 9.0.1 .5 FIPS
  • Oracle Oracle9i Enterprise Edition 9.2.0 .0.5
  • Oracle Oracle9i Enterprise Edition 9.2.0.6.0
  • Oracle Oracle9i Enterprise Edition 9.2.0.7.0
  • Oracle Oracle9i Personal Edition 8.1.7
  • Oracle Oracle9i Personal Edition 9.0.1 .4
  • Oracle Oracle9i Personal Edition 9.0.1 .5
  • Oracle Oracle9i Personal Edition 9.0.1 .5 FIPS
  • Oracle Oracle9i Personal Edition 9.2.0 .0.5
  • Oracle Oracle9i Personal Edition 9.2.0 .6
  • Oracle Oracle9i Personal Edition 9.2.0 .7
  • Oracle Oracle9i Standard Edition 8.1.7
  • Oracle Oracle9i Standard Edition 9.0.1 .4
  • Oracle Oracle9i Standard Edition 9.0.1 .5
  • Oracle Oracle9i Standard Edition 9.0.1 .5 FIPS
  • Oracle Oracle9i Standard Edition 9.2.0 .0.5
  • Oracle Oracle9i Standard Edition 9.2.0 .6
  • Oracle Oracle9i Standard Edition 9.2.0 .7
  • Oracle Pharmaceutical Applications 4.5.0
  • Oracle Pharmaceutical Applications 4.5.1
  • Oracle Pharmaceutical Applications 4.5.2
  • Oracle Workflow 11.5.1
  • Oracle Workflow 11.5.9 .5
  • PeopleSoft Enterprise Portal 8.4.0
  • PeopleSoft Enterprise Portal 8.8.0

References

  • BugTraq: 19054
  • CVE: CVE-2006-3698
  • URL: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2006.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out