Oracle Database多个未明安全漏洞

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1194046 漏洞类型 SQL注入
发布时间 2006-07-21 更新时间 2006-07-25
CVE编号 CVE-2006-3705 CNNVD-ID CNNVD-200607-370
漏洞平台 N/A CVSS评分 10.0
|漏洞来源
https://cxsecurity.com/issue/WLB-2006070088
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200607-370
|漏洞详情
OracleDatabase是一款商业性质大型数据库系统。Oracle发布了2006年7月的紧急补丁更新公告,修复了多个Oracle产品中的多个漏洞。这些漏洞影响Oracle产品的所有安全属性,可导致本地和远程的威胁。其中一些漏洞可能需要各种级别的授权,但也有些不需要任何授权。最严重的漏洞可能导致完全入侵数据库系统。OracleDatabase多个未明安全漏洞,存在未明影响和攻击向量.
|漏洞EXP
Name 	      SQL Injection in package SYS.DBMS_STATS (6980751) [DB21]

Systems     Oracle 10g Release 1

Severity 	High Risk

Category 	SQL Injection

Vendor URL 	http://www.oracle.com/

Author 	Alexander Kornbrust (ak at red-database-security.com)

Advisory 	18 Jul 2006 (V 1.00)

Advisory

########

http://www.red-database-security.com/advisory/oracle_sql_injection_dbms_
stats.html

Details

#######

The package SYS.DBMS_STATS contains a SQL injection vulnerability. Oracle fixed these vulnerabilities with the package dbms_assert. To exploit this vulnerability it is necessary to have the privilege to create a PL/SQL-function.

Patch Information

#################

Apply the patches for Oracle CPU July 2006 on top of Oracle 10g Release 1.

History

#######

01-nov-2005 Oracle secalert was informed

02-nov-2005 Oracle secalert asked for an exploit

18-jul-2006 Oracle published CPU July 2006 [DB21]

18-jul-2006 Advisory published

Additional Information

######################

An analysis of the Oracle CPU July 2006 is available here http://www.red-database-security.com/advisory/oracle_cpu_july_2006.html

This document will be updated during the next few days and weeks with the latest information.
|参考资料

来源:US-CERT
名称:TA06-200A
链接:http://www.us-cert.gov/cas/techalerts/TA06-200A.html
来源:BID
名称:19054
链接:http://www.securityfocus.com/bid/19054
来源:MISC
链接:http://www.red-database-security.com/advisory/oracle_cpu_july_2006.html
来源:www.oracle.com
链接:http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2006.html
来源:VUPEN
名称:ADV-2006-2863
链接:http://www.frsirt.com/english/advisories/2006/2863
来源:BUGTRAQ
名称:20060718OracleDatabase-SQLInjectioninSYS.DBMS_STATS[DB21]
链接:http://www.securityfocus.com/archive/1/archive/1/440453/100/0/threaded
来源:BUGTRAQ
名称:20060718OracleDatabase-SQLInjectioninSYS.DBMS_UPGRADE[DB22]
链接:http://www.securityfocus.com/archive/1/archive/1/440447/100/0/threaded
来源:MISC
名称:http://www.red-database-security.com/advisory/oracle_sql_injection_dbms_upgrade.html
链接:http://www.red-database-security.com/advisory/oracle_sql_injection_dbms_upgrade.html
来源:MISC
链接:http://www.red-database-security.com/advisory/oracle_sql_injection_dbms_stats.html
来源:SECTRACK
名称:10