Vulnerability Details CVE-2003-0634
Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, allows authenticated database users, and arbitrary database users in some cases, to execute arbitrary code via a long library name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.026
EPSS Ranking 85.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2003-0634
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.5_.0.0
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.5_.0.2
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.5_.1.0
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.6_.0.0
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.6_.1.0
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.7_.0.0
-
cpe:2.3:a:oracle:oracle8i:enterprise_8.1.7_.1.0
-
cpe:2.3:a:oracle:oracle8i:standard_8.1.5
-
cpe:2.3:a:oracle:oracle8i:standard_8.1.6
-
cpe:2.3:a:oracle:oracle8i:standard_8.1.7
-
cpe:2.3:a:oracle:oracle8i:standard_8.1.7_.0.0
-
cpe:2.3:a:oracle:oracle8i:standard_8.1.7_.1
-
cpe:2.3:a:oracle:oracle8i:standard_8.1.7_.4
-
cpe:2.3:a:oracle:oracle9i:client_9.2.0.1
-
cpe:2.3:a:oracle:oracle9i:client_9.2.0.2
-
cpe:2.3:a:oracle:oracle9i:enterprise_9.0.1
-
cpe:2.3:a:oracle:oracle9i:enterprise_9.2.0.1
-
cpe:2.3:a:oracle:oracle9i:enterprise_9.2.0.2
-
cpe:2.3:a:oracle:oracle9i:personal_9.0.1
-
cpe:2.3:a:oracle:oracle9i:personal_9.2.0.1
-
cpe:2.3:a:oracle:oracle9i:personal_9.2.0.2
-
cpe:2.3:a:oracle:oracle9i:standard_9.0
-
cpe:2.3:a:oracle:oracle9i:standard_9.0.1
-
cpe:2.3:a:oracle:oracle9i:standard_9.0.1.2
-
cpe:2.3:a:oracle:oracle9i:standard_9.0.1.3
-
cpe:2.3:a:oracle:oracle9i:standard_9.0.1.4
-
cpe:2.3:a:oracle:oracle9i:standard_9.0.2
-
cpe:2.3:a:oracle:oracle9i:standard_9.2.0.1
-
cpe:2.3:a:oracle:oracle9i:standard_9.2.0.2