Get a Pentest and security assessment of your IT network.

Advisories

Oracle-MDSYS.SDO_LRS.txt

The Oracle package MDSYS.SDO_LRS contains a SQL injection vulnerability in the first parameter of convert_to_lrs_layer. Oracle forgot to fix this problem with the April CPU. Oracle fixed these vulnerabilities with the package DBMS_ASSERT. To exploit this vulnerability it is necessary to have the privilege to create a PL/SQL-function.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/51383/Oracle-MDSYS.SDO_LRS.txt

Source: https://packetstormsecurity.com/files/51383/Oracle-MDSYS.SDO_LRS.txt.html

Related posts
Advisories

crossZone.txt

Advisories

Secunia Security Advisory 16900

Advisories

Secunia Security Advisory 19793

Advisories

Secunia Security Advisory 22534