Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allows remote attackers to execute arbitrary code via a long HTTP request method header to the Web Cache listener. NOTE: due to the vagueness of the Oracle advisory, it is not clear whether there are additional issues besides this overflow, although the advisory alludes to multiple "vulnerabilities."
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2004-04-16T04:00:00

Updated: 2024-08-08T00:17:14.437Z

Reserved: 2004-04-06T00:00:00

Link: CVE-2004-0385

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2004-06-01T04:00:00.000

Modified: 2024-11-20T23:48:28.033

Link: CVE-2004-0385

cve-icon Redhat

No data.