lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Tue, 21 Apr 2009 00:53:02 +0300
From: Dennis Yurichev <dennis@...us.info>
To: bugtraq <bugtraq@...urityfocus.com>
Cc: full-disclosure@...ts.grok.org.uk
Subject: CVE-2009-0991 PoC
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi.
Oracle RDBMS CPUapr2009 came out.
http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2009.html
CVE-2009-0991 Listener vulnerability was discovered by me, and here is
attached PoC for it (Python code).
- --
My PGP public key: http://yurichev.com/dennis.yurichev.asc
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.8 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iEYEARECAAYFAkns7r4ACgkQ1YPmFmJG++NmCQCfUPIljnrwnXkGvBA7XtcjVyEx
9DYAoN6fr8DqMRRtYTneEF8IMBrZd7gp
=/VFv
-----END PGP SIGNATURE-----
View attachment "CVE-2009-0991.py" of type "text/plain" (4253 bytes)