Описание
Unspecified vulnerability in the TimesTen Data Server component in Oracle Database 7.0.5.0.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2009 CPU. Oracle has not commented on reliable researcher claims that this is a format string vulnerability via the msg parameter in the evtdump CGI module.
Unspecified vulnerability in the TimesTen Data Server component in Oracle Database 7.0.5.0.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2009 CPU. Oracle has not commented on reliable researcher claims that this is a format string vulnerability via the msg parameter in the evtdump CGI module.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2008-5440
- http://joxeankoret.com/blog/?p=41
- http://secunia.com/advisories/33525
- http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html
- http://www.securityfocus.com/archive/1/500078/100/0/threaded
- http://www.securityfocus.com/archive/1/500080/100/0/threaded
- http://www.securityfocus.com/bid/33177
- http://www.vupen.com/english/advisories/2009/0115
- http://www.zerodayinitiative.com/advisories/ZDI-09-004
EPSS
CVE ID
Связанные уязвимости
Unspecified vulnerability in the TimesTen Data Server component in Oracle Database 7.0.5.0.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2009 CPU. Oracle has not commented on reliable researcher claims that this is a format string vulnerability via the msg parameter in the evtdump CGI module.
EPSS