漏洞信息详情
Oracle 8i SQLNet拒绝服务漏洞
- CNNVD编号:CNNVD-200107-153
- 危害等级: 中危
- CVE编号:
CVE-2001-0498
- 漏洞类型:
其他
- 发布时间:
2001-07-21
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
oracle - 漏洞来源:
Reported to Bugtra… -
漏洞简介
Oracle 8i 8.1.7及其更早版本的Transparent Network Substrate (TNS) over Net8 (SQLNet)存在漏洞。远程攻击者可以借助畸形头扩展中的超大位移SQLNet连接请求导致服务拒绝。
漏洞公告
* It has been reported that the patch is still unavailable. Forthcoming updates will provide additional information when it becomes available. Until fixes are obtainable, administrators should block network access to the listener.
A fix is reportedly being developed.
It will be available at the Oracle MetaLink support website.
http://metalink.oracle.com
参考网址
来源: NAI
名称: 20010627 Oracle 8i SQLNet Header Vulnerability
链接:http://www.nai.com/research/covert/advisories/049.asp
受影响实体
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END