CVE-2000-0987
Oracle Internet Directory - Buffer Overflow via Long Connect Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2000-0987. PoCs published by anonymous, Juan Manuel Pascual Escribá.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in oidldapd in Oracle 8.1.6 for Linux. It uses a standard stack-based overflow with NOP sled and shellcode to spawn a shell with elevated privileges (euid=oracle).
Description
Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.
Exploits (2)
This exploit targets a buffer overflow vulnerability in oidldapd in Oracle 8.1.6 for Linux. It uses a standard stack-based overflow with NOP sled and shellcode to spawn a shell with elevated privileges (euid=oracle).
This exploit targets a buffer overflow in the oidldapd binary in Oracle 8.1.6 by manipulating the ORACLE_HOME environment variable. It uses shellcode to spawn a shell with elevated privileges (euid=oracle).