CVE-2006-5345
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Unspecified vulnerability in Oracle Spatial component in Oracle Database 9.0.1.5, 9.2.0.7, and 10.1.0.4 has unknown impact and remote authenticated attack vectors related to mdsys.sdo_geom, aka Vuln# DB22. NOTE: as of 20061023, Oracle has not disputed reports from reliable third parties that DB22 is related to "length checking" in the RELATE function before MD2.RELATE is called.
Vulnerabilidad no especificada en el componente Oracle Spatial en Oracle Database 9.0.1.5, 9.2.0.7, y 10.1.0.4 tiene impacto y vectores de ataque remotos autenticados desconocidos relacionados con mdsys.sdo_geom, también conocido como Vuln# DB22. NOTA: a fecha de 23/10/2006, Oracle no ha impugnado los informes de una tercera parte fiable de que DB22 está relacionado con la "comprobación de longitud" en la función RELATE anterior a que se llame a MD2.RELATE.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2006-10-17 CVE Reserved
- 2006-10-18 CVE Published
- 2024-03-12 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (10)
URL | Tag | Source |
---|---|---|
http://securitytracker.com/id?1017077 | Vdb Entry | |
http://www.databasesecurity.com/oracle/OracleOct2006-CPU-Analysis.pdf | X_refsource_misc | |
http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html | X_refsource_confirm | |
http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html | X_refsource_misc | |
http://www.securityfocus.com/archive/1/449110/100/0/threaded | Mailing List | |
http://www.us-cert.gov/cas/techalerts/TA06-291A.html | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.securityfocus.com/bid/20588 | 2018-10-17 |
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/22396 | 2018-10-17 | |
http://www.securityfocus.com/archive/1/449711/100/0/threaded | 2018-10-17 | |
http://www.vupen.com/english/advisories/2006/4065 | 2018-10-17 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Oracle Search vendor "Oracle" | Database Server Search vendor "Oracle" for product "Database Server" | 9.0.1.5 Search vendor "Oracle" for product "Database Server" and version "9.0.1.5" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Database Server Search vendor "Oracle" for product "Database Server" | 9.2.0.7 Search vendor "Oracle" for product "Database Server" and version "9.2.0.7" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Database Server Search vendor "Oracle" for product "Database Server" | 10.1.0.4 Search vendor "Oracle" for product "Database Server" and version "10.1.0.4" | - |
Affected
|