<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.1" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Kommentare zu: Oracle CPU April 2008 - Update</title>
	<link>http://blog.red-database-security.com/2008/04/16/oracle-critical-patch-update-cpu-april-2008/</link>
	<description></description>
	<pubDate>Wed, 20 Aug 2008 16:38:35 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.1</generator>

	<item>
		<title>Von: Alexander Kornbrust</title>
		<link>http://blog.red-database-security.com/2008/04/16/oracle-critical-patch-update-cpu-april-2008/#comment-6425</link>
		<author>Alexander Kornbrust</author>
		<pubDate>Mon, 16 Jun 2008 17:28:56 +0000</pubDate>
		<guid>http://blog.red-database-security.com/2008/04/16/oracle-critical-patch-update-cpu-april-2008/#comment-6425</guid>
		<description>Hello zg,

I guess you mean privilege escalation. SQL Injection is always a security problem even if privilege escalation is not possible.

Even if AUTHID='CURRENT_USER' privilege escalation is sometimes possible, e.g. KUPW$WORKER, KUPM$MCP, ... have all AUTHID='CURRENT_USER' and are exploitable.

Hope this helps.

Regards

 Alexander</description>
		<content:encoded><![CDATA[<p>Hello zg,</p>
<p>I guess you mean privilege escalation. SQL Injection is always a security problem even if privilege escalation is not possible.</p>
<p>Even if AUTHID=&#8217;CURRENT_USER&#8217; privilege escalation is sometimes possible, e.g. KUPW$WORKER, KUPM$MCP, &#8230; have all AUTHID=&#8217;CURRENT_USER&#8217; and are exploitable.</p>
<p>Hope this helps.</p>
<p>Regards</p>
<p> Alexander</p>
]]></content:encoded>
	</item>
	<item>
		<title>Von: &#62;zg</title>
		<link>http://blog.red-database-security.com/2008/04/16/oracle-critical-patch-update-cpu-april-2008/#comment-6424</link>
		<author>&#62;zg</author>
		<pubDate>Mon, 16 Jun 2008 16:52:13 +0000</pubDate>
		<guid>http://blog.red-database-security.com/2008/04/16/oracle-critical-patch-update-cpu-april-2008/#comment-6424</guid>
		<description>I have a question,  how can we exploit injections like SDO_UTIL [DB05], SDO_GEOM [DB06] and SDO_IDX [DB07]   when they are defined with AUTHID CURRENT_USER ?</description>
		<content:encoded><![CDATA[<p>I have a question,  how can we exploit injections like SDO_UTIL [DB05], SDO_GEOM [DB06] and SDO_IDX [DB07]   when they are defined with AUTHID CURRENT_USER ?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
