Title: Oracle TNS Listener Multiple Command Long Argument Overflow
Info
Disclosure
Jun 27, 2001
Discovery
Unknown
Dates
Exploit
Unknown
Solution
Unknown
Description
A buffer overflow exists in Oracle. The TNS Listener fails to validate passed to the STATUS, PING, SERVICES, TRC_FILE, SAVE_CONFIG and RELOAD commands resulting in a stack overflow. With a specially crafted request, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.