CVE-2007-5506: High severity Oracle Database Server vulnerability
Published Oct 17, 2007
·Updated
The Core RDBMS component in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote attackers to cause a denial of service (CPU consumption) via a crafted type 6 Data packet, aka DB20.
Affected Software
5 affected components
Oracle Database Server=9.2.0.8
Oracle Database Server=9.2.0.8dv
Oracle Database Server=9.0.1.5
Oracle Database Server=10.2.0.3
Oracle Database Server=10.1.0.5
Event History
Oct 17, 2007
CVE Published
11:17 PM
Oct 18, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5506?
CVE-2007-5506 is classified as a denial of service vulnerability that can lead to CPU consumption.
2
How do I fix CVE-2007-5506?
To mitigate CVE-2007-5506, it is recommended to upgrade to a patched version of Oracle Database.
3
Which Oracle Database versions are affected by CVE-2007-5506?
CVE-2007-5506 affects Oracle Database versions 9.0.1.5+, 9.2.0.8, 10.1.0.5, and 10.2.0.3.
4
What kind of attack does CVE-2007-5506 enable?
CVE-2007-5506 enables remote attackers to perform a denial of service attack through crafted data packets.
5
Is CVE-2007-5506 a critical vulnerability?
CVE-2007-5506 is considered critical as it allows remote attackers to disrupt service availability.