First published: Wed Nov 16 2005(Updated: )
Oracle Databases running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication by supplying a valid username.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database 10g | =personal_10.1.0.3 | |
Oracle Oracle9i | =standard_9.0.2 | |
Oracle Database | =8.0.5.1 | |
Oracle 8i | =standard_8.1.7.4 | |
Oracle 8i | =enterprise_8.1.5.0.0 | |
Oracle Database 10g | =standard_10.1.0.3.1 | |
Oracle Oracle9i | =standard_9.0.1.4 | |
Oracle Database | =8.1.7.4 | |
Oracle 8i | =enterprise_8.1.6.0.0 | |
Oracle Oracle9i | =personal_8.1.7 | |
Oracle Database Lite | =5.0 | |
Oracle Oracle9i | =personal_9.0.4 | |
Oracle Oracle9i | =enterprise_9.0.2.4 | |
Oracle Oracle9i | =enterprise_9.2.0.5 | |
Oracle Oracle9i | =personal_9.2.0.1 | |
Oracle Oracle9i | =personal_9.2.0.2 | |
Oracle Database | =8.1.7 | |
Oracle 8i | =standard_8.1.7.1 | |
Oracle Oracle9i | =personal_9.2.0.5 | |
Oracle 8i | =standard_8.0.6 | |
Oracle Database | =8.1.5 | |
Oracle Oracle9i | =personal_9.0.1.5 | |
Oracle Oracle9i | =personal_9.0.2.4 | |
Oracle 8i | =standard_8.1.6 | |
Oracle 8i | =enterprise_8.1.7.0.0 | |
Oracle Database 10g | =enterprise_10.1.0.4 | |
Oracle Oracle9i | =standard_9.0.1 | |
Oracle Oracle9i | =standard_9.2.0.3 | |
Oracle Database 10g | =enterprise_10.1.0.3 | |
Oracle Oracle9i | =enterprise_9.2.0.2 | |
Oracle Database 10g | =enterprise_10.1.0.3.1 | |
Oracle Oracle9i | =enterprise_9.0.1.5 | |
Oracle Database 10g | =standard_10.1.0.2 | |
Oracle Database 10g | =personal_9.0.4.0 | |
Oracle Oracle9i | =personal_9.2 | |
Oracle Oracle9i | =standard_9.0 | |
Oracle Database 10g | =enterprise_9.0.4.0 | |
Oracle Database | =8.0.6.3 | |
Oracle Oracle9i | =standard_9.0.1.5_fips | |
Oracle 8i | =enterprise_8.0.6.0.0 | |
Oracle Database | =7.3.3 | |
Oracle Database | =8.0.4 | |
Oracle 8i | =enterprise_8.1.6.1.0 | |
Oracle Oracle9i | =standard_9.0.2.4 | |
Oracle Oracle9i | =enterprise_9.0.1.5_fips | |
Oracle Oracle9i | =standard_9.2.0.1 | |
Oracle Database 10g | =standard_9.0.4.0 | |
Oracle Database Lite | =5.0.2.9.0 | |
Oracle Database | =7.1.3 | |
Oracle 8i | =enterprise_8.1.7.1.0 | |
Oracle Oracle9i | =standard_9.2 | |
Oracle Oracle9i | =personal_9.0.1.5_fips | |
Oracle Database 10g | =standard_10.1.0.4 | |
Oracle Database 10g | =personal_10.1.0.3.1 | |
Oracle Oracle9i | =enterprise_9.0.1 | |
Oracle Database Lite | =5.0.2.0.0 | |
Oracle Oracle9i | =standard_9.0.1.2 | |
Oracle Database | =8.0.5 | |
Oracle Oracle9i | =enterprise_9.2.0 | |
Oracle Oracle9i | =standard_9.2.0.5 | |
Oracle Database | =8.0.2 | |
Oracle Oracle9i | =standard_8.1.7 | |
Oracle Oracle9i | =enterprise_8.1.7 | |
Oracle Database 10g | =personal_10.1.0.2 | |
Oracle Oracle9i | =enterprise_9.0.4 | |
Oracle 8i | =enterprise_8.1.5.1.0 | |
Oracle Database | =7.1.5 | |
Oracle Database 10g | =standard_10.1.0.3 | |
Oracle Oracle9i | =personal_9.0.1 | |
Oracle 8i | =enterprise_8.0.5.0.0 | |
Oracle Oracle9i | =standard_9.0.4 | |
Oracle Database | =7.0.64 | |
Oracle Oracle9i | =standard_9.0.1.3 | |
Oracle Database | =8.1.6 | |
Oracle Oracle9i | =standard_9.2.0.2 | |
Oracle Database | =8.0.3 | |
Oracle Database 10g | =enterprise_10.1.0.2 | |
Oracle Oracle9i | =enterprise_9.2.0.3 | |
Oracle 8i | =enterprise_8.1.5.0.2 | |
Oracle Oracle9i | =standard_9.2.3 | |
Oracle Database Lite | =5.0.1.0.0 | |
Oracle Oracle9i | =personal_9.0.1.4 | |
Oracle Oracle9i | =personal_9.2.0.3 | |
Oracle 8i | =standard_8.0.6.3 | |
Oracle Database 10g | =standard_10.1.0.4.2 | |
Oracle Database | =7.0.2 | |
Oracle Oracle9i | =enterprise_9.2.0.6 | |
Oracle Oracle9i | =enterprise_9.2.0.1 | |
Oracle 8i | =standard_8.1.7 | |
Oracle Oracle9i | =standard_9.0.1.5 | |
Oracle 8i | =enterprise_8.1.7.4 | |
Oracle Oracle9i | =personal_9.2.0.6 | |
Oracle 8i | =standard_8.1.7.0.0 | |
Oracle 8i | =enterprise_8.0.6.0.1 | |
Oracle 8i | =standard_8.1.5 | |
Oracle Database 10g | =personal_10.1.0.4 | |
Oracle Database | =8.0.1 | |
Oracle Oracle9i | =standard_9.2.0.6 | |
Oracle Database | =7.3.4 | |
Oracle Database | =8.0.6 | |
Oracle Oracle9i | =enterprise_9.0.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3641 has a high severity rating due to its potential for unauthorized access to Oracle databases.
To mitigate CVE-2005-3641, disable Simple File Sharing on Windows XP and apply the latest security patches from Oracle.
CVE-2005-3641 affects various versions of Oracle, including Oracle8i, Oracle9i, and Oracle10g running on Windows XP.
Yes, CVE-2005-3641 allows remote attackers to bypass authentication if they supply a valid username.
As a temporary workaround for CVE-2005-3641, limit access to the Oracle database by implementing firewall rules.