Back to search
CVE-2003-1208
Published: May 19, 2005
Modified: Aug 8, 2024
PUBLISHED
Description
Multiple buffer overflows in Oracle 9i 9 before 9.2.0.3 allow local users to execute arbitrary code by (1) setting the TIME_ZONE session parameter to a long value, or providing long parameters to the (2) NUMTOYMINTERVAL, (3) NUMTODSINTERVAL or (4) FROM_TZ functions.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
oracle-multiple-function-bo(15060)
vdb-entry
x_refsource_XF
VU#399806
third-party-advisory
x_refsource_CERT-VN
3840
vdb-entry
x_refsource_OSVDB
O-093
third-party-advisory
government-resource
x_refsource_CIAC
10805
third-party-advisory
x_refsource_SECUNIA
VU#819126
third-party-advisory
x_refsource_CERT-VN
3838
vdb-entry
x_refsource_OSVDB
VU#240174
third-party-advisory
x_refsource_CERT-VN
20040205 Oracle Database 9ir2 Interval Conversion Functions Buffer Overflow
mailing-list
x_refsource_BUGTRAQ
9587
vdb-entry
x_refsource_BID
3839
vdb-entry
x_refsource_OSVDB
VU#846582
third-party-advisory
x_refsource_CERT-VN
3837
vdb-entry
x_refsource_OSVDB
http://www.nextgenss.com/advisories/ora_numtodsinterval.txt
x_refsource_MISC
http://www.nextgenss.com/advisories/ora_from_tz.txt
x_refsource_MISC
http://www.nextgenss.com/advisories/ora_numtoyminterval.txt
x_refsource_MISC
http://www.nextgenss.com/advisories/ora_time_zone.txt
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now