I. Description
The COVERT labs at PGP
Security have discovered a buffer overflow vulnerability in Oracle 8i
that allows intruders to execute arbitrary code with the privileges of
the TNS listener process. The vulnerability occurs in a section of
code that is executed prior to authentication, so an intruder does not
require a username or password.
For more information, see the COVERT Labs Security Advisory,
available at
-
http://www.pgp.com/research/covert/advisories/050.asp