|
|
|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0072
The original article can be found at: http://www.securityfocus.com/bid/51458/discuss
|
| |
Vulnerable Systems:
*Oracle Database 10.1.0.5,
*Oracle Database 10.2.0.3,
*Oracle Database 10.2.0.4,
*Oracle Database 10.2.0.5,
*Oracle Database 11.1.0.7
*Oracle Database 11.2.0.2,
*Oracle Database 11.2.0.3
Oracle Database Server is prone to a remote vulnerability in Listener.
The vulnerability can be exploited over the 'Oracle Net' protocol. An attacker does not require privileges to exploit this vulnerability.
Vendor Status:
Orcale had since issued an update for this vulnerability
Patch Availability:
http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
CVE Information:
CVE-2012-0072
Disclosure Timeline:
2012-January-23 Rev 3. Updated JD Edwards information for One World Tools SP24
2012-January-18 Rev 2. Updated credit information
2012-January-17 Rev 1. Initial Release
|
|
|
|
|