Vulnerability Description
Buffer overflow in Oracle 8.1.5 applications such as names, namesctl, onrsd, osslogin, tnslsnr, tnsping, trcasst, and trcroute possibly allow local users to gain privileges via a long ORACLE_HOME environmental variable.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Oracle8I | 8.1.5 |
References
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0294.htmlExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5390
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0294.htmlExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5390
FAQ
What is CVE-2000-0986?
CVE-2000-0986 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Buffer overflow in Oracle 8.1.5 applications such as names, namesctl, onrsd, osslogin, tnslsnr, tnsping, trcasst, and trcroute possibly allow local users to gain privileges via a long ORACLE_HOME envi...
How severe is CVE-2000-0986?
CVE-2000-0986 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0986?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Oracle8I.