CVE-2003-0634: Buffer Overflow
Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, allows authenticated database users, and arbitrary database users in some cases, to execute arbitrary code via a long library name.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0634?
CVE-2003-0634 has a high severity rating due to its potential for allowing authenticated and arbitrary database users to execute arbitrary code.
How do I fix CVE-2003-0634?
To mitigate CVE-2003-0634, it is recommended to apply the relevant security patches provided by Oracle for affected versions of Oracle Database.
Which Oracle products are affected by CVE-2003-0634?
CVE-2003-0634 affects various versions of Oracle8i and Oracle9i, including both standard and enterprise editions.
Can CVE-2003-0634 be exploited remotely?
Exploitability of CVE-2003-0634 is possible if an attacker has network access to the vulnerable Oracle database and valid authentication.
What is the impact of CVE-2003-0634 on system security?
The impact of CVE-2003-0634 includes the potential for arbitrary code execution, which can compromise the integrity and confidentiality of the database.