CVE-2007-2116

Description

Unspecified vulnerability in the Advanced Replication component in Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.5 has unknown impact and attack vectors, aka DB10. NOTE: as of 20070424, Oracle has not disputed claims that these are buffer overflows in kkzi.o for the SYS.DBMS_SNAP_INTERNAL package using the (1) SNAP_OWNER or (2) SNAP_NAME parameters.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
20.146

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Oracle 10.2.0.1Windows
Multiple Vulnerabilities are affected in Oracle 9.0.1.5Windows
Multiple Vulnerabilities are affected in Oracle Database Server 9.0.1.5Windows
Multiple Vulnerabilities are affected in Oracle Database Server 9.2.0.7Windows
Multiple Vulnerabilities are affected in Oracle Database Server 10.2.0.1Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234