First published: Sat Jul 21 2001(Updated: )
Oracle listener before Oracle 9i allows attackers to cause a denial of service by repeatedly sending the first portion of a fragmented Oracle command without sending the remainder of the command, which causes the listener to hang.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Oracle9i |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0518 is classified as a denial of service vulnerability impacting Oracle listeners.
To mitigate CVE-2001-0518, consider upgrading to Oracle 9i or applying relevant patches provided by Oracle.
CVE-2001-0518 affects Oracle listener versions prior to Oracle 9i.
CVE-2001-0518 does not directly expose sensitive information but can disrupt service availability.
Yes, CVE-2001-0518 can be exploited remotely by sending crafted fragmented commands to the Oracle listener.