Oracle OTRCREP Oracle Home...

- AV AC AU C I A
发布: 2001-08-02
修订: 2025-04-13

Oracle is an Enterprise level SQL database, supporting numerous features and options. It is distributed and maintained by Oracle Corporation. A buffer overflow has been discovered in the handling of $ORACLE_HOME by otrcrep. otrcrep is installed with the Oracle suite as a SUID oracle SGID dba binary. This buffer overflow may be exploited by a local user to overwrite stack variables, including the return address, and execute arbitrary code with the privileges of user oracle and group dba.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息