Unrated severityNVD Advisory· Published Oct 4, 2002· Updated Apr 16, 2026
CVE-2002-0965
CVE-2002-0965
Description
Buffer overflow in TNS Listener for Oracle 9i Database Server on Windows systems, and Oracle 8 on VM, allows local users to execute arbitrary code via a long SERVICE_NAME parameter, which is not properly handled when writing an error message to a log file.
Affected products
3cpe:2.3:a:oracle:oracle9i:9.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:oracle:oracle9i:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:oracle9i:9.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:oracle9i:9.0.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- otn.oracle.com/deploy/security/pdf/net9_dos_alert.pdfnvdPatchVendor Advisory
- www.securityfocus.com/bid/4845nvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/630091nvdUS Government Resource
- archives.neohapsis.com/archives/vulnwatch/2002-q2/0096.htmlnvd
- online.securityfocus.com/archive/1/276526nvd
- www.iss.net/security_center/static/9288.phpnvd
News mentions
0No linked articles in our index yet.