Vulnerabilities > CVE-2001-0833 - Buffer Overflow vulnerability in Oracle OTRCREP Oracle Home Environment Variable

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
oracle
exploit available

Summary

Buffer overflow in otrcrep in Oracle 8.0.x through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_HOME environment variable, aka the "Oracle Trace Collection Security Vulnerability."

Exploit-Db

descriptionOracle OTRCREP Oracle 8/9 Home Environment Variable Buffer Overflow Vulnerability. CVE-2001-0833. Local exploit for unix platform
idEDB-ID:21045
last seen2016-02-02
modified2001-08-02
published2001-08-02
reporterJuan Manuel Pascual Escribá
sourcehttps://www.exploit-db.com/download/21045/
titleOracle OTRCREP Oracle 8/9 Home Environment Variable Buffer Overflow Vulnerability