CVE-2006-0272: Buffer Overflow
Unspecified vulnerability in the XML Database component of Oracle Database server 9.2.0.7 and 10.1.0.4 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB29. NOTE: based on mutual credits by the relevant sources, it is highly likely that this issue is a buffer overflow in the (a) DBMSXMLSCHEMA and (b) DBMSXMLSCHEMAINT packages, as exploitable via long arguments to (1) XDB.DBMSXMLSCHEMA.GENERATESCHEMA or (2) XDB.DBMSXMLSCHEMA.GENERATESCHEMAS.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0272?
The severity of CVE-2006-0272 is considered to be high due to the potential for a buffer overflow.
How do I fix CVE-2006-0272?
To fix CVE-2006-0272, it is recommended to apply relevant patches and updates released by Oracle for affected database versions.
Which Oracle Database versions are affected by CVE-2006-0272?
CVE-2006-0272 affects Oracle Database 9.2.0.7 and 10.1.0.4 across its enterprise, standard, and personal editions.
What impact does CVE-2006-0272 have on systems?
CVE-2006-0272 can lead to unspecified security impacts, potentially allowing attackers to execute arbitrary code.
What attack vectors are associated with CVE-2006-0272?
CVE-2006-0272 has unspecified attack vectors, suggesting that it may be exploited in various ways by targeting the XML Database component.