Update Protection against Oracle Database Server Network Authentication AUTH_SESSKEY Buffer Overflow Vulnerability
| Check Point Reference: | CPAI-2009-274 | |
| Date Published: | ||
| Severity: | ||
| Last Updated: | ||
| Source: | Secunia Advisory: SA37027 | |
| Industry Reference(s): | CVE-2009-1979 | |
| Protection Provided by: |
Security Gateway
|
|
| Who is Vulnerable? Oracle Database 10g 10.1.0.5 Oracle Database 10g Release 2 10.2.0.4 | ||
| Vulnerability Description A buffer overflow vulnerability exists in the Oracle Database server, an enterprise-level relational database application suite. A remote attacker may exploit this vulnerability to execute arbitrary code on a vulnerable system. |
||
|
Update/Patch Available Apply patches: Oracle Critical Patch Update Advisory - October 2009 |
|
|
Vulnerability Details The vulnerability is due to an error in the Oracle Database server that fails to sufficiently validate the length field of the AUTH_SESSKEY parameter. A remote attacker can exploit this issue by sending malicious packets to the target server. Successful exploitation of this vulnerability would allow the attacker to execute arbitrary code remotely. |
Protection Overview
This protection will detect and block Oracle traffic with overly long AUTH_SESSKEY parameter.
In order for the protection to be activated, update your Security Gateway/VPN-1 product to the latest IPS/SmartDefense update. For information on how to update IPS/SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.