CVE-2000-0987

Oracle Internet Directory - Buffer Overflow via Long Connect Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2000-0987. PoCs published by anonymous, Juan Manuel Pascual Escribá.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in oidldapd in Oracle 8.1.6 for Linux. It uses a standard stack-based overflow with NOP sled and shellcode to spawn a shell with elevated privileges (euid=oracle).

Description

Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by anonymous · clocallinux
https://www.exploit-db.com/exploits/183

This exploit targets a buffer overflow vulnerability in oidldapd in Oracle 8.1.6 for Linux. It uses a standard stack-based overflow with NOP sled and shellcode to spawn a shell with elevated privileges (euid=oracle).

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: Oracle 8.1.6 (8ir2) oidldapd
No auth needed
Prerequisites: Access to a vulnerable Oracle 8.1.6 installation on Linux · Ability to execute the exploit binary on the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Juan Manuel Pascual Escribá · clocallinux
https://www.exploit-db.com/exploits/20312

This exploit targets a buffer overflow in the oidldapd binary in Oracle 8.1.6 by manipulating the ORACLE_HOME environment variable. It uses shellcode to spawn a shell with elevated privileges (euid=oracle).

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: Oracle Internet Directory 2.0.6 (Oracle 8.1.6)
No auth needed
Prerequisites: Local access to the target system · Oracle 8.1.6 with vulnerable oidldapd binary
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/140340
Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/140709
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5401

Scores

EPSS 0.0136
EPSS Percentile 68.3%

Details

Status published
Products (2)
oracle/internet_directory 2.0.6
oracle/oracle8i 8.1.6
Published Dec 19, 2000
Tracked Since Feb 18, 2026