CVE-2007-2114: Buffer Overflow
Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 and 10.2.0.2 have unknown impact and remote authenticated attack vectors, related to (1) Change Data Capture (CDC), aka DB08, and (2) Oracle Instant Client, aka DB11. NOTE: as of 20070424, oracle has not disputed reliable claims that these issues are buffer overflows using a long CHANGETABLENAME parameter to the DBMSCDCIPUBLISH.CHGTABCACHE procedure (DB08) and Oracle Instant Client genezi utility (DB11).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2114?
The severity of CVE-2007-2114 is currently unknown as the specific impact of the vulnerabilities is unspecified.
How do I fix CVE-2007-2114?
To mitigate CVE-2007-2114, it is recommended to apply the latest security patch updates from Oracle for versions 10.1.0.5 and 10.2.0.2.
What versions of Oracle Database are affected by CVE-2007-2114?
CVE-2007-2114 affects Oracle Database versions 10.1.0.5 and 10.2.0.2.
What types of attacks does CVE-2007-2114 allow?
CVE-2007-2114 allows for remote authenticated attacks related to multiple unspecified vulnerabilities.
Is CVE-2007-2114 associated with specific features of Oracle Database?
Yes, CVE-2007-2114 is related to vulnerabilities in Change Data Capture (CDC) and Oracle Instant Client.