- Alexander Kornbrust Oracle Security Blog - http://blog.red-database-security.com -

Corba Exploit for VisiBroker published

Dieser Eintrag stammt von Alexander Kornbrust Am 4 Mrz 2008 @ 17:57 In Exploit, Oracle Security | Keine Kommentare

Today, Luigi Auriemma posted an [1] advisory and [2] heap overflow exploit for the Corba Visibroker 8.0 from Borland.

Visibroker was used by older versions of Oracle Reports (e.g. in the Oracle Application Server, Reports Developer or eBusiness Suite) and Oracle Discoverer. In Oracle 10g Release 2 Visibroker was replaced by the JDK ORB. Details see Metalink note [3] 307669.1.


Dieser Artikel wurde ausgedruckt ab Alexander Kornbrust Oracle Security Blog: http://blog.red-database-security.com

URL zum Artikel: http://blog.red-database-security.com/2008/03/04/corba-exploit-for-visibroker-published/

URLs in this post:
[1] advisory: http://aluigi.altervista.org/adv/visibroken-adv.txt
[2] heap overflow exploit : http://aluigi.org/poc/visibroken.zip
[3] 307669.1: http://blog.red-database-security.comhttps://metalink.oracle.com/metalink/plsql/
f?p=130:14:4898725527333624866::::p14_database_id,p14_docid,p14_show_header,p14_show_help,p14_black_frame,p14_font:NOT,307669.1,1,0,1,helvetica

Klicken hier zum Drucken.