Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2008-01-17 CVE-2008-0347 Multiple vulnerability in Oracle January 2008 Critical Patch Update
Unspecified vulnerability in the Oracle Ultra Search component in Oracle Collaboration Suite 10.1.2; Database 9.2.0.8, 10.1.0.5, and 10.2.0.3; and Application Server 9.0.4.3 and 10.1.2.0.2; has unknown impact and local attack vectors, aka OCS01.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0346 Multiple vulnerability in Oracle January 2008 Critical Patch Update
Unspecified vulnerability in the Oracle Jinitiator component in Oracle Application Server 1.3.1.27 and E-Business Suite 11.5.10.2 has unknown impact and remote attack vectors, aka AS01.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0345 Multiple vulnerability in Oracle January 2008 Critical Patch Update
Unspecified vulnerability in the Core RDBMS component in Oracle Database 11.1.0.6 has unknown impact and remote attack vectors, aka DB08.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0344 Multiple vulnerability in Oracle January 2008 Critical Patch Update
Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.3 has unknown impact and remote attack vectors, aka DB07.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0343 Multiple vulnerability in Oracle January 2008 Critical Patch Update
Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, and 10.1.0.5 has unknown impact and remote attack vectors, aka DB06.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0342 Multiple vulnerability in Oracle Database Server 10.1.0.5/10.2.0.3/9.2.0.8
Unspecified vulnerability in the Upgrade/Downgrade component in Oracle Database 9.2.0.8, 10.1.0.5, and 10.2.0.3 has unknown impact and remote attack vectors, aka DB05.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0341 Multiple vulnerability in Oracle Database Server 10.1.0.5/9.0.1.5
Unspecified vulnerability in the Advanced Queuing component in Oracle Database 9.0.1.5 FIPS+ and 10.1.0.5 has unknown impact and remote attack vectors, aka DB03.
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0340 Multiple vulnerability in Oracle January 2008 Critical Patch Update
Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to the (1) Advanced Queuing component (DB02) and (2) Oracle Spatial component (DB04).
network
low complexity
oracle
critical
10.0
2008-01-17 CVE-2008-0339 Multiple vulnerability in Oracle Database Server 10.1.0.5/10.2.0.3/9.2.0.8Dv
Unspecified vulnerability in the XML DB component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 has unknown impact and remote attack vectors, aka DB01.
network
low complexity
oracle
critical
10.0
2008-01-10 CVE-2008-0226 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yassl_imp.cpp.
network
low complexity
yassl mysql oracle apple debian canonical CWE-119
7.5