Vulnerabilities > CVE-2005-3438 - Multiple vulnerability in Oracle October Security Update
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Multiple unspecified vulnerabilities in Oracle Database Server 9i up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB04 in Change Data Capture; (2) DB06 in Data Guard Logical Standby; (3) DB10 in Locale; (4) DB12 in Materialized Views; (5) DB13 in Objects Extension; (6) DB15 in Oracle Label Security; (7) DB27 in Security, possibly due to a buffer overflow in sys.pbsde.init; and (8) DB28 and (9) DB29 in Workspace Manager.
Vulnerable Configurations
Saint
bid | 15134 |
description | Oracle Security Component sys.pbsde buffer overflow |
id | database_oracle_version |
osvdb | 20612 |
title | oracle_security_pbsde |
type | remote |
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2005-October/038061.html
- http://secunia.com/advisories/17250
- http://www.kb.cert.org/vuls/id/210524
- http://www.kb.cert.org/vuls/id/449444
- http://www.oracle.com/technetwork/topics/security/cpuoct2005-090497.html
- http://www.securityfocus.com/bid/15134
- http://www.us-cert.gov/cas/techalerts/TA05-292A.html