Security Advisory

CVE-2004-1774

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-04-19 04:00:00
Last updated 2024-08-08 01:00:37
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Buffer overflow in the SDO_CODE_SIZE procedure of the MD2 package (MDSYS.MD2.SDO_CODE_SIZE) in Oracle 10g before 10.1.0.2 Patch 2 allows local users to execute arbitrary code via a long LAYER parameter.