Unspecified Vulnerability in Oracle Database Advanced Queuing Component
CVE-2009-0977
Currently unrated
Summary
An unspecified vulnerability within the Advanced Queuing component of Oracle Database allows remote authenticated users to potentially compromise the confidentiality and integrity of the database. This issue may be linked to SQL injection flaws within the GRANT_TYPE_ACCESS procedure of the DBMS_AQADM_SYS package, as suggested by security researchers. Proper security measures should be implemented to secure affected versions.
References
Timeline
Vulnerability published
Vulnerability Reserved