Description
SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of service (crash) via certain debug requests that are not properly handled by the debugging feature.
Affected products
- oracle / database_server9.2.1 – 9.2.1
- oracle / oracle9i9.0 – 9.0
- oracle / oracle9i9.0.1 – 9.0.1
- oracle / oracle9i9.0.1.2 – 9.0.1.2
- oracle / oracle9i9.0.1.3 – 9.0.1.3
- oracle / oracle9i9.0.2 – 9.0.2
References
- MISChttp://archives.neohapsis.com/archives/vulnwatch/2002-q3/0072.html
- VENDOR_ADVISORYhttp://otn.oracle.com/deploy/security/pdf/2002alert38rev1.pdf
- MISChttp://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=20941
- MISChttp://www.iss.net/security_center/static/9237.php
- MISChttp://www.securityfocus.com/bid/5457