|
|
service_register_NSGR Denial of Service
|
01/18/05
CVE 2004-1369
By specifying a large offset in a service_register_NSGR
request, an attacker could cause the TNS listener to attempt
to read memory beyond the end of a buffer, causing the service
to crash.
Oracle Database prior to 10.1.0.3 is affected by this
vulnerability.
|
Denial of Service due to Missing Password
|
09/09/04
In its default configuration, no password is required
to access the TNS listener. This could allow any remote
user to shut it down, leading to a denial of service.
|
Debugger Denial of Service
|
08/13/02
CVE 2002-0856
A flaw in the debugging mechanism in Oracle 9i could allow
a remote attacker to crash the SQL*NET listener by sending
it a specially crafted request. After an attack, the
listener would not respond to any requests until it is
manually restarted. Oracle 9.0.x and 9.2 on all platforms
are affected by this vulnerability.
|
SERVICE_NAME Buffer Overflow
|
06/25/02
Due to a buffer overflow condition, a remote attacker could
overwrite the saved return address and take control of
the process execution by sending a long, specially crafted
SERVICE_NAME parameter to the TNS Listener.
Oracle 9.0.x on Windows or VM platforms, and Oracle 8.0.6.x
on VM platforms are affected by this vulnerability.
02/19/02
CVE 2002-0567
The Oracle listener does not require any authentication from
entities requesting a library function call. Therefore,
an attacker can claim to be an Oracle process and call a
function such as system() which allows the
execution of arbitrary system commands. Furthermore, it is
possible to force the listener to communicate with the EXTPROC
process using sockets instead of named pipes, thus allowing
the vulnerability to be exploited remotely over a TCP connection.
Oracle 8 and 9 on any platform are affected by this vulnerability.
07/19/01
CVE 2001-0499
A buffer overflow condition in the processing of commands
could allow an attacker to execute arbitrary code on the
server by sending a command with a very long argument.
Since there are some commands that never require authentication
this vulnerability can be exploited remotely. On a Windows
or Unix server, the vulnerability could allow an attacker
to execute commands on the underlying operating system with
the privileges of the TNS listener service, which by default is
LocalSystem on Windows and oracle on Unix.
Any system running Oracle 8i with the TNS listener service
enabled which has not been patched is affected by this vulnerability.
CVE 1999-0784
CVE 2001-0498
CVE 2002-0509
CVE 2002-0965
CVE 2002-1118
Older vulnerabilities in Oracle TNS Listener could lead
to denial of service or local privilege elevation.
|