Vulnerability Name:

CVE-2007-5504 (CCN-37302)

Assigned:2007-10-16
Published:2007-10-16
Updated:2018-10-15
Summary:Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+ and 10.1.0.5 unknown impact and remote attack vectors, related to (1) Import (DB01) and (2) Advanced Queuing (DB25).
Note: as of 20071108, Oracle has not disputed reliable researcher claims that DB25 is for a buffer overflow in the DBLINK_INFO procedure in the DBMS_AQADM_SYS package.
CVSS v3 Severity:5.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
4.8 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): 
Access Complexity (AC): 
Authentication (Au): 
Impact Metrics:Confidentiality (C): 
Integrity (I): 
Availibility (A): 
6.5 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
4.8 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): 
Access Complexity (AC): 
Athentication (Au): 
Impact Metrics:Confidentiality (C): 
Integrity (I): 
Availibility (A): 
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Informational
References:Source: MITRE
Type: CNA
CVE-2007-5504

Source: CCN
Type: HP Security Bulletin HPSBMA02133 SSRT061201 rev.6
HP Oracle for OpenView (OfO) Critical Patch Update

Source: HP
Type: UNKNOWN
SSRT061201

Source: CCN
Type: SA27251
Oracle Products Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
27251

Source: CCN
Type: SA27409
HP Oracle for OpenView Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
27409

Source: CCN
Type: SECTRACK ID: 1018823
Oracle Database and Other Products Have Unspecified Vulnerabilities With Unspecified Impact

Source: MISC
Type: UNKNOWN
http://www.appsecinc.com/resources/alerts/oracle/2007-08.shtml

Source: CCN
Type: Oracle Critical Patch Update - October 2007
Oracle Critical Patch Update Advisory - October 2007

Source: CONFIRM
Type: UNKNOWN
http://www.oracle.com/technetwork/topics/security/cpuoct2007-092913.html

Source: BUGTRAQ
Type: UNKNOWN
20071029 Team SHATTER Alert: Oracle Database Buffer overflow vulnerability in procedure DBMS_AQADM_SYS.DBLINK_INFO

Source: BID
Type: UNKNOWN
26235

Source: CCN
Type: BID-26235
Oracle Database Server DBMS_AQADM_SYS.DBLINK_INFO Buffer Overflow Vulnerability

Source: SECTRACK
Type: UNKNOWN
1018823

Source: CERT
Type: US Government Resource
TA07-290A

Source: VUPEN
Type: Vendor Advisory
ADV-2007-3524

Source: VUPEN
Type: Vendor Advisory
ADV-2007-3626

Source: XF
Type: UNKNOWN
oracle-database-import-unspecified(37302)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:oracle:database_server:9.0.1.5:*:*:*:*:*:*:*
  • OR cpe:/a:oracle:database_server:10.1.0.5:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Vulnerability Name:

    CVE-2007-5504 (CCN-38155)

    Assigned:2007-10-24
    Published:2007-10-24
    Updated:2007-10-24
    Summary:Oracle Database is vulnerable to a buffer overflow in the DBLINK_INFO procedure of the SYS.DBMS_AQADM_SYS package. By sending specially-crafted data to the DBLINK_INFO procedure, a remote attacker with EXECUTE privileges on the SYS.DBMS_AQADM_SYS package could overflow a buffer and execute arbitrary code on the system or cause the database process to crash.
    CVSS v3 Severity:5.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L)
    Exploitability Metrics:Attack Vector (AV): Network
    Attack Complexity (AC): Low
    Privileges Required (PR): Low
    User Interaction (UI): Required
    Scope:Scope (S): Unchanged
    Impact Metrics:Confidentiality (C): Low
    Integrity (I): Low
    Availibility (A): Low
    CVSS v2 Severity:6.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
    4.8 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P/E:U/RL:OF/RC:C)
    Exploitability Metrics:Access Vector (AV): 
    Access Complexity (AC): 
    Authentication (Au): 
    Impact Metrics:Confidentiality (C): 
    Integrity (I): 
    Availibility (A): 
    6.5 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
    4.8 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P/E:U/RL:OF/RC:C)
    Exploitability Metrics:Access Vector (AV): 
    Access Complexity (AC): 
    Athentication (Au): 
    Impact Metrics:Confidentiality (C): 
    Integrity (I): 
    Availibility (A): 
    Vulnerability Consequences:Gain Access
    References:Source: MITRE
    Type: CNA
    CVE-2007-5504

    Source: CCN
    Type: BugTraq Mailing List, Mon, 29 Oct 2007 10:30:25 +0000
    Team SHATTER Alert: Oracle Database Buffer overflow vulnerability in procedure DBMS_AQADM_SYS.DBLINK_INFO

    Source: CCN
    Type: SA27251
    Oracle Products Multiple Vulnerabilities

    Source: CCN
    Type: SA27409
    HP Oracle for OpenView Multiple Vulnerabilities

    Source: CCN
    Type: SECTRACK ID: 1018823
    Oracle Database and Other Products Have Unspecified Vulnerabilities With Unspecified Impact

    Source: CCN
    Type: Team SHATTER Security Alert October 24, 2007
    Oracle Database Buffer overflow vulnerability in procedure DBMS_AQADM_SYS.DBLINK_INFO

    Source: CCN
    Type: Oracle Critical Patch Update - October 2007
    Oracle Critical Patch Update Advisory - October 2007

    Source: CCN
    Type: BID-26235
    Oracle Database Server DBMS_AQADM_SYS.DBLINK_INFO Buffer Overflow Vulnerability

    Source: XF
    Type: UNKNOWN
    oracle-database-aq-bo(38155)

    Vulnerable Configuration:Configuration CCN 1:
  • cpe:/a:oracle:database_server:10.1.0.5:r1:*:*:*:*:*:*
  • OR cpe:/a:oracle:database_server:9.0.1.5:*:fips+:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    oracle database server 9.0.1.5
    oracle database server 10.1.0.5
    oracle database server 10.1.0.5 r1
    oracle database server 9.0.1.5