Unspecified Vulnerability in Oracle Database Advanced Queuing Component
CVE-2009-0977

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
15 April 2009

Summary

An unspecified vulnerability within the Advanced Queuing component of Oracle Database allows remote authenticated users to potentially compromise the confidentiality and integrity of the database. This issue may be linked to SQL injection flaws within the GRANT_TYPE_ACCESS procedure of the DBMS_AQADM_SYS package, as suggested by security researchers. Proper security measures should be implemented to secure affected versions.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.