Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2003-1208

Multiple buffer overflows in Oracle 9i 9 before 9.2.0.3 allow local users to execute arbitrary code by (1) setting the TIME_ZONE session parameter to a long value, or providing long parameters to the (2) NUMTOYMINTERVAL, (3) NUMTODSINTERVAL or (4) FROM_TZ functions.

  • Published: Dec 3, 2004
  • Updated: Apr 13, 2023
  • CVE: CVE-2003-1208
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 10
  • AV:N/AC:L/Au:N/C:C/I:C/A:C

No CWE or OWASP classifications available.

Software From Fixed in
oracle / oracle9i standard_9.0.2 standard_9.0.2.x
oracle / oracle9i standard_9.0.1.4 standard_9.0.1.4.x
oracle / oracle9i personal_9.2.0.1 personal_9.2.0.1.x
oracle / oracle9i personal_9.2.0.2 personal_9.2.0.2.x
oracle / oracle9i standard_9.0.1 standard_9.0.1.x
oracle / oracle9i enterprise_9.2.0.2 enterprise_9.2.0.2.x
oracle / oracle9i personal_9.2 personal_9.2.x
oracle / oracle9i standard_9.0 standard_9.0.x
oracle / oracle9i standard_9.2.0.1 standard_9.2.0.1.x
oracle / oracle9i enterprise_9.0.1 enterprise_9.0.1.x
oracle / oracle9i enterprise_9.2.0 enterprise_9.2.0.x
oracle / oracle9i enterprise_9.2.0.1 enterprise_9.2.0.1.x
oracle / oracle9i standard_9.0.1.2 standard_9.0.1.2.x
oracle / oracle9i standard_9.0.1.3 standard_9.0.1.3.x
oracle / oracle9i standard_9.2.0.2 standard_9.2.0.2.x
oracle / oracle9i personal_9.0.1 personal_9.0.1.x
oracle / oracle9i standard_9.2 standard_9.2.x