PT-2006-2854 · Oracle · Oracle Database Server
Alexander Kornbrust
·
Published
2006-04-20
·
Updated
2018-10-18
·
CVE-2006-1870
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Oracle Database Server versions 8.1.7.4, 9.0.1.5, 9.2.0.7, 10.1.0.5, and 10.2.0.2
Description
The issue concerns an unspecified vulnerability in the Export component of Oracle Database Server. Details about the impact and attack vectors are unavailable. There is no information about real-world incidents or the estimated number of potentially affected devices worldwide.
Recommendations
For Oracle Database Server version 8.1.7.4, update to a version that is confirmed to be not affected by this issue.
For Oracle Database Server version 9.0.1.5, update to a version that is confirmed to be not affected by this issue.
For Oracle Database Server version 9.2.0.7, update to a version that is confirmed to be not affected by this issue.
For Oracle Database Server version 10.1.0.5, update to a version that is confirmed to be not affected by this issue.
For Oracle Database Server version 10.2.0.2, update to a version that is confirmed to be not affected by this issue.
As a temporary workaround, consider restricting access to the Export component until a patch is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Oracle Database Server