CVE Database
/

CVE-2006-0272

Back to search

CVE-2006-0272

Published: Jan 18, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in the XML Database component of Oracle Database server 9.2.0.7 and 10.1.0.4 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB29. NOTE: based on mutual credits by the relevant sources, it is highly likely that this issue is a buffer overflow in the (a) DBMS_XMLSCHEMA and (b) DBMS_XMLSCHEMA_INT packages, as exploitable via long arguments to (1) XDB.DBMS_XMLSCHEMA.GENERATESCHEMA or (2) XDB.DBMS_XMLSCHEMA.GENERATESCHEMAS.

VendorProductVersions

n/a

n/a

affected
n/a

References

oracle-january2006-update(24321)
vdb-entry
x_refsource_XF
18493
third-party-advisory
x_refsource_SECUNIA
ADV-2006-0323
vdb-entry
x_refsource_VUPEN
16287
vdb-entry
x_refsource_BID
TA06-018A
third-party-advisory
x_refsource_CERT
VU#545804
third-party-advisory
x_refsource_CERT-VN
1015499
vdb-entry
x_refsource_SECTRACK
ADV-2006-0243
vdb-entry
x_refsource_VUPEN
18608
third-party-advisory
x_refsource_SECUNIA
VU#891644
third-party-advisory
x_refsource_CERT-VN
oracle-xdbdbmx-xmlschema-bo(24376)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now