Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

DB:ORACLE:DBMS:CDC-AQJM-UNSAFE

Severity

Major

Recommended

No

Recommended Action

Drop

Category

DB

Keywords

Oracle DBMS CDC/AQJM Unsafe Function

Release Date

2009/01/29

Update Number

1360

Supported Platforms

idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

DB: Oracle DBMS CDC/AQJM Unsafe Function


This signature detects attempts to exploit a known vulnerability in the Oracle database. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the daemon.

Extended Description

Oracle has released its critical patch update for April 2008. The advisory addresses 41 vulnerabilities affecting Oracle Database, Oracle Application Server, Oracle Collaboration Suite, Oracle E-Business Suite and Applications, Oracle Enterprise Manager, Oracle PeopleSoft Enterprise, and Oracle Siebel SimBuilder. The issues identified by the vendor affect all security properties of the Oracle products and present local and remote threats. Various levels of authorization are needed to leverage some of the issues, but other issues do not require any authorization. The most severe of the vulnerabilities could possibly compromise affected computers.

Affected Products

  • Hp oracle_for_openview 10g
  • Hp oracle_for_openview 10gR2
  • Hp oracle_for_openview 8.1.7
  • Hp oracle_for_openview 9.1.01
  • Hp oracle_for_openview 9.2
  • Hp oracle_for_openview 9.2.0
  • Oracle collaboration_suite_10g 10.1.2
  • Oracle e-business_suite_11i 11.5.10
  • Oracle e-business_suite_11i 11.5.10 CU2
  • Oracle e-business_suite_11i 11.5.9
  • Oracle e-business_suite_12 12.0.0
  • Oracle e-business_suite_12 12.0.1
  • Oracle e-business_suite_12 12.0.2
  • Oracle e-business_suite_12 12.0.3
  • Oracle e-business_suite_12 12.0.4
  • Oracle oracle10g_application_server 10.1.2 .0.2
  • Oracle oracle10g_application_server 10.1.2 .1.0
  • Oracle oracle10g_application_server 10.1.2 .2.0
  • Oracle oracle10g_application_server 10.1.3 .1.0
  • Oracle oracle10g_application_server 10.1.3 .3.0
  • Oracle oracle10g_application_server 9.0.4 3
  • Oracle oracle10g_enterprise_edition 10.1.0 .5
  • Oracle oracle10g_enterprise_edition 10.2.0 .2
  • Oracle oracle10g_enterprise_edition 10.2.0.2 64 bit
  • Oracle oracle10g_enterprise_edition 10.2.0 .3
  • Oracle oracle10g_personal_edition 10.1.0.5
  • Oracle oracle10g_personal_edition 10.2.0 .2
  • Oracle oracle10g_personal_edition 10.2.0 .3
  • Oracle oracle10g_standard_edition 10.1.0 .5
  • Oracle oracle10g_standard_edition 10.2.0 .2
  • Oracle oracle10g_standard_edition 10.2.0 .3
  • Oracle oracle11g_enterprise_edition 11.1.0 6
  • Oracle oracle11g_standard_edition 11.1.0 6
  • Oracle oracle11g_standard_edition_one 11.1.0 6
  • Oracle oracle9i_enterprise_edition 9.2.0.8.0
  • Oracle oracle9i_enterprise_edition 9.2.0 .8DV
  • Oracle oracle9i_personal_edition 9.2.0 .8
  • Oracle oracle9i_personal_edition 9.2.0 .8DV
  • Oracle oracle9i_standard_edition 9.2.0.8
  • Oracle oracle9i_standard_edition 9.2.0 .8DV
  • Oracle peoplesoft_enterprise_human_capital_management 8.8 SP1
  • Oracle peoplesoft_enterprise_human_capital_management 8.9
  • Oracle peoplesoft_enterprise_human_capital_management 9.0
  • Oracle peoplesoft_enterprise_peopletools 8.22.19
  • Oracle peoplesoft_enterprise_peopletools 8.48.16
  • Oracle peoplesoft_enterprise_peopletools 8.49.09
  • Oracle siebel_simbuilder 7.8.2
  • Oracle siebel_simbuilder 7.8.5

References

  • BugTraq: 28725
  • CVE: CVE-2008-1811
  • URL: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2008.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out