First published: Tue Jan 09 2001(Updated: )
Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle 8i | =8.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1180 is considered a high severity vulnerability due to the potential for privilege escalation.
To fix CVE-2000-1180, upgrade to a version of Oracle Database that is not affected, such as versions beyond 8.1.5.
Users running Oracle 8.1.5 Connection Manager Control are affected by CVE-2000-1180.
CVE-2000-1180 is a buffer overflow vulnerability that can be exploited via a long command line argument.
No, CVE-2000-1180 can only be exploited by local users with access to the command line.