First published: Wed Oct 17 2007(Updated: )
Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+ and 10.1.0.5 unknown impact and remote attack vectors, related to (1) Import (DB01) and (2) Advanced Queuing (DB25). NOTE: as of 20071108, Oracle has not disputed reliable researcher claims that DB25 is for a buffer overflow in the DBLINK_INFO procedure in the DBMS_AQADM_SYS package.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database | =9.0.1.5 | |
Oracle Database | =10.1.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5504 involves multiple unspecified vulnerabilities related to Import and Advanced Queuing in Oracle Database versions 9.0.1.5 and 10.1.0.5.
The impact of CVE-2007-5504 is currently unknown, but it has remote attack vectors that could be exploited.
CVE-2007-5504 affects Oracle Database versions 9.0.1.5 and 10.1.0.5.
As of now, there are no public exploits specifically documented for CVE-2007-5504.
To secure against CVE-2007-5504, apply the latest patches and updates provided by Oracle for affected database versions.