CVE-2006-5342
published 2006-10-18CVE-2006-5342: Unspecified vulnerability in Oracle Spatial component in Oracle Database 9.0.1.5, 9.2.0.6, and 10.1.0.3 has unknown impact and remote authenticated attack…
high7.1CVSS 3.1
AVNACHAuSCCICAC
Unspecified vulnerability in Oracle Spatial component in Oracle Database 9.0.1.5, 9.2.0.6, and 10.1.0.3 has unknown impact and remote authenticated attack vectors related to mdsys.sdo_tune, aka Vuln# DB18. NOTE: as of 20061023, Oracle has not disputed reports from reliable third parties that DB18 might be related to SQL injection in the EXTENT_OF function.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | database_server | — | — |
| oracle | database_server | — | — |
| oracle | database_server | — | — |
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/22396http://securitytracker.com/id?1017077http://www.databasesecurity.com/oracle/OracleOct2006-CPU-Analysis.pdfhttp://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.htmlhttp://www.red-database-security.com/advisory/oracle_cpu_oct_2006.htmlhttp://www.securityfocus.com/archive/1/449110/100/0/threadedhttp://www.securityfocus.com/archive/1/449711/100/0/threadedhttp://www.securityfocus.com/bid/20588http://www.us-cert.gov/cas/techalerts/TA06-291A.htmlhttp://www.vupen.com/english/advisories/2006/4065http://secunia.com/advisories/22396http://securitytracker.com/id?1017077http://www.databasesecurity.com/oracle/OracleOct2006-CPU-Analysis.pdfhttp://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.htmlhttp://www.red-database-security.com/advisory/oracle_cpu_oct_2006.htmlhttp://www.securityfocus.com/archive/1/449110/100/0/threadedhttp://www.securityfocus.com/archive/1/449711/100/0/threadedhttp://www.securityfocus.com/bid/20588http://www.us-cert.gov/cas/techalerts/TA06-291A.htmlhttp://www.vupen.com/english/advisories/2006/4065
2006-10-18
Published