Oracle "PROCESS_DUP_HANDLE" Privilege Escalation Vulnerability

Monday Mar 12th 2007 by DatabaseJournal.com Staff
Share:

A vulnerability has been reported in Oracle Database 10, which can be exploited by malicious, local users to gain escalated privileges.

[From Secunia]

Cesar Cerrudo has reported a vulnerability in Oracle Database 10, which can be exploited by malicious, local users to gain escalated privileges.

The vulnerability is caused due to the incorrect use of the "SetSecurityDescriptorDacl()" function when performing various tasks...

The article continues at http://secunia.com/advisories/24475/

Share:
Home
Mobile Site | Full Site
Copyright 2017 © QuinStreet Inc. All Rights Reserved