Oracle Database Server Oracle Binary Local Buffer Overflow Vulnerability
BID:8844
Info
Oracle Database Server Oracle Binary Local Buffer Overflow Vulnerability
| Bugtraq ID: | 8844 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 17 2003 12:00AM |
| Updated: | Oct 17 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to c0ntex <[email protected]>. |
| Vulnerable: |
Oracle Oracle9i Standard Edition 9.0.2 Oracle Oracle9i Standard Edition 9.0.1 .4 Oracle Oracle9i Standard Edition 9.0.1 .3 Oracle Oracle9i Standard Edition 9.0.1 .2 Oracle Oracle9i Standard Edition 9.0.1 Oracle Oracle9i Standard Edition 9.0 .2.4 Oracle Oracle9i Standard Edition 9.0 Oracle Oracle9i Personal Edition 9.0.1 Oracle Oracle9i Personal Edition 9.0 .2.4 Oracle Oracle9i Enterprise Edition 9.0.1 Oracle Oracle9i Enterprise Edition 9.0 .2.4 |
| Not Vulnerable: | |
Discussion
Oracle Database Server Oracle Binary Local Buffer Overflow Vulnerability
Oracle Database Server 'oracle' binary has been reported prone to a local buffer overflow vulnerability.
The issue likely presents itself due to a lack of sufficient boundary checks performed on command line arguments passed to the affected binary. It has been reported that a local attacker may overflow the bounds of an insufficient reserved buffer in oracle process memory. Ultimately this condition could be leveraged by the attacker to trigger the execution of arbitrary instructions in the context of the vulnerable binary, which has been reported to be setuid Oracle user.
Oracle Database Server 'oracle' binary has been reported prone to a local buffer overflow vulnerability.
The issue likely presents itself due to a lack of sufficient boundary checks performed on command line arguments passed to the affected binary. It has been reported that a local attacker may overflow the bounds of an insufficient reserved buffer in oracle process memory. Ultimately this condition could be leveraged by the attacker to trigger the execution of arbitrary instructions in the context of the vulnerable binary, which has been reported to be setuid Oracle user.
Exploit / POC
Oracle Database Server Oracle Binary Local Buffer Overflow Vulnerability
The following proof of concept has been supplied:
The following proof of concept has been supplied:
Solution / Fix
Oracle Database Server Oracle Binary Local Buffer Overflow Vulnerability
Solution:
A one-off patch has been released to address this issue in Oracle 9i Database Release 9.2.0.4 for Linux x86 and can be obtained from the following URL:
http://metalink.oracle.com/
Solution:
A one-off patch has been released to address this issue in Oracle 9i Database Release 9.2.0.4 for Linux x86 and can be obtained from the following URL:
http://metalink.oracle.com/
References
Oracle Database Server Oracle Binary Local Buffer Overflow Vulnerability
References:
References:
- Oracle Homepage (Oracle)
- Oracle Security Alert #59 (Oracle)
- Oracle Support Metalink (Oracle)