|
======================
KA-2003-08: Multiple Vulnerabilities in Oracle Servers
----------------------
ÃÖÃÊÀÛ¼ºÀÏ : 2003-02-20
°» ½Å ÀÏ :
Ãâ ó :
target=_blank>http://www.cert.org/advisories/CA-2003-05.html
ÀÛ ¼º ÀÚ : À̵¿·Ã(ryuni@certcc.or.kr)
-- Á¦¸ñ --------------
¿À¶óŬ ¼¹ö ´ÙÁß Ãë¾àÁ¡
-- ÇØ´ç ½Ã½ºÅÛ --------
Oracle9i/Database Release 2
Oracle9i/Database Release 1
Oracle8i/Database v 8.1.7
Oracle8/Database v 8.0.6
Oracle9i/Application Server Release 9.0.2
Oracle9i/Application Server Release 9.0.3
--¿µÇâ-----------------
¿À¶óŬ µ¥ÀÌÅͺ£À̽º¿¡ ÀúÀåµÈ Á¤º¸ÀÇ Àбâ, ¼öÁ¤, »èÁ¦µî°ú °°Àº ÀÓÀÇÀÇ Äڵ尡
½ÇÇà°¡´ÉÇÏ°í ¼ºñ½º°ÅºÎ°ø°ÝÀÇ ¿øÀÎÀÌ µÉ ¼ö ÀÖ´Ù.
-- ¼³¸í-----------------------------
ORACLE.EXE¿Í WebDAV ¸ðµâ¿¡¼ ¹öÆÛ¿À¹öÇ÷οì¿Í °°Àº Ãë¾àÁ¡ÀÌ ¹ß°ßµÇ¾ú´Ù.
-- ÇØ°áÃ¥--------------------------
ÆÐÄ¡¸¦ Ç϶ó.
´ÙÀ½À» Âü°íÇÏ¿©
target=_blank>http://metalink.oracle.com
À¥ÆäÀÌÁö¿¡¼ ÆÐÄ¡ ¹öÆ°À» Ŭ¸¯ÇÏ°í Bug Number¸¦ ÀÔ·ÂÇÏ°í
submit ¹öÆ°À» Ŭ¸¯Çϸé ÆÐÄ¡¸¦ ´Ù¿î¹ÞÀ» ¼ö ÀÖ´Ù.
Buffer Overflow in DIRECTORY parameter of Oracle9i Database Server
http://otn.oracle.com/deploy/security/pdf/2003alert48.pdf
Buffer Overflow in TZ_OFFSET function of Oracle9i Database Server
http://otn.oracle.com/deploy/security/pdf/2003alert49.pdf
Buffer Overflow in TO_TIMESTAMP_TZ function of Oracle9i Database Server
http://otn.oracle.com/deploy/security/pdf/2003alert50.pdf
Buffer Overflow in ORACLE.EXE binary of Oracle9i Database Server
target=_blank>http://otn.oracle.com/deploy/security/pdf/2003alert51.pdf
Two Vulnerabilities in Oracle9i Application Server
target=_blank>http://otn.oracle.com/deploy/security/pdf/2003alert52.pdf
------- ÂüÁ¶ »çÀÌÆ® --------------------------
target=_blank>http://www.cert.org/advisories/CA-2003-05.html
target=_blank>http://metalink.oracle.com
--------------------------------------------
|