lists.openwall.net   lists  /  announce  john-users  owl-users  popa3d-users  /  xvendor  oss-security  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4 
Open Source and information security mailing list archives
 
Order Openwall GNU/*/Linux 2.0 on a CD with delivery worldwide
[<prev] [next>] [thread-next>] [month] [year] [list]
From: mshirley at gmail.com (Mark Shirley)
Subject: Oracle exploit? Where's the beef?

Does anyone know anything further about the new oracle exploit? It
seems no one is saying shit about it other then "it's bad, it affects
everything, patch patch patc".

This is the only url i could find that has anything remotely interesting.

http://www.ciac.org/ciac/bulletins/o-209.shtml

VULNERABILITY ASSESSMENT:  Oracle rates this as a HIGH. "Exploiting
some of the vulnerabilities requires network access, but no valid user
account."

Typical response from oracle,  "DAMAGE:  Oracle does not give
descriptions of the vulnerabilities on this alert."

Remote exploits are bad mmkay.


Hosted by DataForce ISP - Powered by Openwall GNU/*/Linux