Unrated severityNVD Advisory· Published Jan 17, 2007· Updated Jun 16, 2026
CVE-2007-0272
CVE-2007-0272
Description
Multiple buffer overflows in MDSYS.MD in Oracle Database 8.1.7.4, 9.0.1.5, 9.2.0.7, and 10.1.0.4 allows remote authenticated users to cause a denial of service (crash) or execute arbitrary code via unspecified vectors involving certain public procedures, aka DB05.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:oracle:database_server:10.1.0.4:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:oracle:database_server:10.1.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:database_server:8.1.7.4:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:database_server:9.0.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:database_server:9.2.0.7:*:*:*:*:*:*:*
- Range: <10.0.0 (multiple versions: 8.1.7.4, 9.0.1.5, 9.2.0.7, 10.1.0.4)
Patches
Vulnerability mechanics
References
10- secunia.com/advisories/23794nvdPatchVendor Advisory
- www.us-cert.gov/cas/techalerts/TA07-017A.htmlnvdPatchUS Government Resource
- osvdb.org/32911nvd
- securitytracker.com/idnvd
- www.appsecinc.com/resources/alerts/oracle/2007-05.shtmlnvd
- www.oracle.com/technetwork/topics/security/cpujan2007-101493.htmlnvd
- www.securityfocus.com/archive/1/458038/100/0/threadednvd
- www.securityfocus.com/archive/1/474047/100/0/threadednvd
- www.securityfocus.com/bid/22083nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/31541nvd
News mentions
0No linked articles in our index yet.