CVE-2006-0272
published 2006-01-18CVE-2006-0272: Unspecified vulnerability in the XML Database component of Oracle Database server 9.2.0.7 and 10.1.0.4 has unspecified impact and attack vectors, as identified…
PriorityP432critical9CVSS 2.0
AVNACLAuSCCICAC
EPSS
5.82%
92.3th percentile
Unspecified vulnerability in the XML Database component of Oracle Database server 9.2.0.7 and 10.1.0.4 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB29. NOTE: based on mutual credits by the relevant sources, it is highly likely that this issue is a buffer overflow in the (a) DBMS_XMLSCHEMA and (b) DBMS_XMLSCHEMA_INT packages, as exploitable via long arguments to (1) XDB.DBMS_XMLSCHEMA.GENERATESCHEMA or (2) XDB.DBMS_XMLSCHEMA.GENERATESCHEMAS.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | oracle10g | — | — |
| oracle | oracle10g | — | — |
| oracle | oracle10g | — | — |
| oracle | oracle9i | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2005-3964 openmotif libUil buffer overflows
bugzilla·2008-01-28·CVSS 7.5
CVE-2005-3964 [HIGH] CVE-2005-3964 openmotif libUil buffer overflows
CVE-2005-3964 openmotif libUil buffer overflows
Common Vulnerabilities and Exposures assigned an identifier CVE-2005-3964 to the following vulnerability:
Multiple buffer overflows in libUil (libUil.so) in OpenMotif 2.2.3, and possibly other versions, allows attackers to execute arbitrary code via the (1) diag_issue_diagnostic function in UilDiags.c and (2) open_source_file function in UilSrcSrc.c.
References:
http://marc.theaimsgroup.com/?l=full-disclosure&m=113349242925897&w=2
http://www.securityfocus.com/archive/1/archive/1/418459/100/0/threaded
http://www.redhat.com/support/errata/RHSA-2006-0272.html
http://www.securityfocus.com/bid/15684
http://www.securityfocus.com/bid/15686
http://www.frsirt.com/english/advisories/2005/2709
http://securitytracker.com/id?1015303
http://xforce.iss.
Bugzilla
CVE-2005-3964 openmotif libUil buffer overflows
bugzilla·2006-02-07·CVSS 7.5
CVE-2005-3964 [HIGH] CVE-2005-3964 openmotif libUil buffer overflows
CVE-2005-3964 openmotif libUil buffer overflows
Fixed in RHSA-2006-0272.
Bugzilla
CVE-2005-3964 openmotif libUil buffer overflows
bugzilla·2005-12-02·CVSS 7.5
CVE-2005-3964 [HIGH] CVE-2005-3964 openmotif libUil buffer overflows
CVE-2005-3964 openmotif libUil buffer overflows
openmotif libUil buffer overflows
http://marc.theaimsgroup.com/?l=full-disclosure&m=113349242925897&w=2
xfocus have discovered two buffer overflow flaws in openmotif's libUil
library. This overflow is going to depend on how a motif application
is passing data into the UIL library.
This issue also affects FC3
Discussion:
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0272.html
---
I can see where this issue has been
Bugzilla
CVE-2005-3964 openmotif libUil buffer overflows
bugzilla·2005-12-02·CVSS 7.5
CVE-2005-3964 [HIGH] CVE-2005-3964 openmotif libUil buffer overflows
CVE-2005-3964 openmotif libUil buffer overflows
openmotif libUil buffer overflows
http://marc.theaimsgroup.com/?l=full-disclosure&m=113349242925897&w=2
xfocus have discovered two buffer overflow flaws in openmotif's libUil
library. This overflow is going to depend on how a motif application
is passing data into the UIL library.
This issue also affects RHEL3
This issue also affects RHEL2.1
Discussion:
Created attachment 124061
CVE-2005-3964 libUil patch
---
Fixed in RHSA-2006-0272.
http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0893.htmlhttp://secunia.com/advisories/18493http://secunia.com/advisories/18608http://securitytracker.com/id?1015499http://www.argeniss.com/research/ARGENISS-ADV-010601.txthttp://www.integrigy.com/info/IntegrigySecurityAnalysis-CPU0106.pdfhttp://www.kb.cert.org/vuls/id/545804http://www.kb.cert.org/vuls/id/891644http://www.oracle.com/technetwork/topics/security/cpujan2006-082403.htmlhttp://www.red-database-security.com/advisory/oracle_cpu_jan_2006.htmlhttp://www.securityfocus.com/bid/16287http://www.us-cert.gov/cas/techalerts/TA06-018A.htmlhttp://www.vupen.com/english/advisories/2006/0243http://www.vupen.com/english/advisories/2006/0323https://exchange.xforce.ibmcloud.com/vulnerabilities/24321https://exchange.xforce.ibmcloud.com/vulnerabilities/24376http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0893.htmlhttp://secunia.com/advisories/18493http://secunia.com/advisories/18608http://securitytracker.com/id?1015499http://www.argeniss.com/research/ARGENISS-ADV-010601.txthttp://www.integrigy.com/info/IntegrigySecurityAnalysis-CPU0106.pdfhttp://www.kb.cert.org/vuls/id/545804http://www.kb.cert.org/vuls/id/891644http://www.oracle.com/technetwork/topics/security/cpujan2006-082403.htmlhttp://www.red-database-security.com/advisory/oracle_cpu_jan_2006.htmlhttp://www.securityfocus.com/bid/16287http://www.us-cert.gov/cas/techalerts/TA06-018A.htmlhttp://www.vupen.com/english/advisories/2006/0243http://www.vupen.com/english/advisories/2006/0323https://exchange.xforce.ibmcloud.com/vulnerabilities/24321https://exchange.xforce.ibmcloud.com/vulnerabilities/24376
2006-01-18
Published