¿À¶óŬ ¼­¹ö ´ÙÁß Ãë¾àÁ¡
ÀÛ¼ºÀÚ °ü¸®ÀÚ ÀÛ¼º½Ã°£ 2003-03-14 01:17:14
 

======================
KA-2003-08: Multiple Vulnerabilities in Oracle Servers
----------------------

ÃÖÃÊÀÛ¼ºÀÏ : 2003-02-20
°»  ½Å  ÀÏ :
Ãâ      ó : target=_blank>http://www.cert.org/advisories/CA-2003-05.html

ÀÛ  ¼º  ÀÚ : À̵¿·Ã(ryuni@certcc.or.kr)

-- Á¦¸ñ --------------
¿À¶óŬ ¼­¹ö ´ÙÁß Ãë¾àÁ¡

-- ÇØ´ç ½Ã½ºÅÛ --------
Oracle9i/Database Release 2
Oracle9i/Database Release 1
Oracle8i/Database v 8.1.7
Oracle8/Database v 8.0.6
Oracle9i/Application Server Release 9.0.2
Oracle9i/Application Server Release 9.0.3

--¿µÇâ-----------------
¿À¶óŬ µ¥ÀÌÅͺ£À̽º¿¡ ÀúÀåµÈ Á¤º¸ÀÇ Àбâ, ¼öÁ¤, »èÁ¦µî°ú °°Àº ÀÓÀÇÀÇ Äڵ尡
½ÇÇà°¡´ÉÇÏ°í ¼­ºñ½º°ÅºÎ°ø°ÝÀÇ ¿øÀÎÀÌ µÉ ¼ö ÀÖ´Ù.

-- ¼³¸í-----------------------------
ORACLE.EXE¿Í WebDAV ¸ðµâ¿¡¼­ ¹öÆÛ¿À¹öÇ÷οì¿Í °°Àº Ãë¾àÁ¡ÀÌ ¹ß°ßµÇ¾ú´Ù.

-- ÇØ°áÃ¥--------------------------
ÆÐÄ¡¸¦ Ç϶ó.
´ÙÀ½À» Âü°íÇÏ¿© target=_blank>http://metalink.oracle.com

À¥ÆäÀÌÁö¿¡¼­ ÆÐÄ¡ ¹öÆ°À» Ŭ¸¯ÇÏ°í Bug Number¸¦ ÀÔ·ÂÇÏ°í
submit ¹öÆ°À» Ŭ¸¯Çϸé ÆÐÄ¡¸¦ ´Ù¿î¹ÞÀ» ¼ö ÀÖ´Ù.

Buffer Overflow in DIRECTORY parameter of Oracle9i Database Server
http://otn.oracle.com/deploy/security/pdf/2003alert48.pdf
Buffer Overflow in TZ_OFFSET function of Oracle9i Database Server
http://otn.oracle.com/deploy/security/pdf/2003alert49.pdf
Buffer Overflow in TO_TIMESTAMP_TZ function of Oracle9i Database Server
http://otn.oracle.com/deploy/security/pdf/2003alert50.pdf
Buffer Overflow in ORACLE.EXE binary of Oracle9i Database Server
target=_blank>http://otn.oracle.com/deploy/security/pdf/2003alert51.pdf

Two Vulnerabilities in Oracle9i Application Server
target=_blank>http://otn.oracle.com/deploy/security/pdf/2003alert52.pdf



------- ÂüÁ¶ »çÀÌÆ® --------------------------
target=_blank>http://www.cert.org/advisories/CA-2003-05.html

target=_blank>http://metalink.oracle.com

--------------------------------------------


¸ñ·Ï | ÀÔ·Â | ¼öÁ¤ | ´äº¯ | »èÁ¦