Overview
Oracle Application Server Web Cache contains a heap overflow vulnerability in the handling of client requests that could result in arbitrary code execution.
Description
The Oracle Web Cache acts as a reverse proxy, caching static and dynamic content generated from Oracle Application web servers. There is a heap overflow vulnerability in the way Oracle Web Cache processes HTTP requests. By supplying an overly long HTTP Request Method header, an attacker could execute arbitrary code with privileges of the vulnerable process. According to Oracle:
|
Impact
A remote, unauthenticated attacker could execute arbitrary code with privileges of the vulnerable process. |
Solution
Apply PatchOracle has published Oracle Security Alert #66 regarding this issue. For further information, please refer to MetaLink Document ID 265310.1 (login required). |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://www.inaccessnetworks.com/ian/services/secadv01.txt
- http://otn.oracle.com/deploy/security/pdf/2004alert66.pdf
- http://otn.oracle.com/deploy/security/pdf/oracle_severity_ratings.pdf
- http://otn.oracle.com/products/ias/web_cache/index.html
- http://metalink.oracle.com/metalink/plsql/ml2_documents.showDocument?p_database_id=NOT&p_id=265310.1
- http://secunia.com/advisories/11118/
- http://www.ietf.org/rfc/rfc2616.txt
Acknowledgements
Thanks to Ioannis Migadakis of InAccess Networks for reporting this vulnerability.
This document was written by Damon Morda.
Other Information
CVE IDs: | CVE-2004-0385 |
Severity Metric: | 20.32 |
Date Public: | 2004-03-15 |
Date First Published: | 2004-03-22 |
Date Last Updated: | 2004-04-20 20:44 UTC |
Document Revision: | 20 |