CVE-2007-0274: Buffer Overflow
Multiple unspecified vulnerabilities in Oracle Database 9.2.0.7 and 10.1.0.5 have unknown impact and attack vectors related to (1) Export and sys.dbmslogreputil (DB08), and (2) Oracle Streams and sys.dbmscaptureadminternal privileges (DB09). NOTE: Oracle has not disputed reliable researcher claims that DB08 is for a buffer overflow in the GETOBJECTNAME procedure in the DBMSLOGREPUTIL package, and DB09 is for buffer overflows in the CREATECAPTURE, ALTERCAPTURE, and ABORTTABLEINSTANTIATION procedures in SYS.DBMSCAPTUREADMINTERNAL.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0274?
The severity of CVE-2007-0274 remains unspecified due to unknown impact and attack vectors.
What versions of Oracle Database are affected by CVE-2007-0274?
CVE-2007-0274 affects Oracle Database versions 9.2.0.7 and 10.1.0.5.
How do I fix CVE-2007-0274?
Currently, there are no specific patches or fixes documented for CVE-2007-0274.
What are the potential risks associated with CVE-2007-0274?
Potential risks may include exploitation of unspecified vulnerabilities affecting export and privilege management features.
Is CVE-2007-0274 actively being exploited?
There is no public information indicating that CVE-2007-0274 is actively being exploited at this time.