6.4
CVSSv2

CVE-2007-5507

Published: 17/10/2007 Updated: 15/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

The GIOP service in TNS Listener in the Oracle Net Services component in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote malicious users to cause a denial of service (crash) or read potentially sensitive memory via a connect GIOP packet with an invalid data size, which triggers a buffer over-read, aka DB22.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle database server 9.2.0.8

oracle database server 9.2.0.8dv

oracle database server 10.1.0.5

oracle database server 10.2.0.3

oracle database server 9.0.1.5