Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Oracle TNSListener SERVICE_NAME Remote Buffer Overflow Vulnerability

TNSListener is a component of the Oracle database, distributed by Oracle Corporation.

A buffer overflow has been reported in the Oracle TNSListener. This buffer overflow may allow a user to remotely execute code on a vulnerable system. This is the result of an error in logging an oversized SERVICE_NAME received as part of a TNS packet.

Reportedly, this issue only exists on versions of Oracle 9.0.x for Microsoft Windows and VM.

This issue was formerly discussed in BID 4955.







 

Privacy Statement
Copyright 2009, SecurityFocus