CVE-2002-1767
Oracle Database Server 8.1.5 - Buffer Overflow via Long Command Line Argument
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-1767. PoCs published by the itch.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Oracle 8i's tnslsnr process on Linux. It overwrites the return address with a stack-based address and executes shellcode to spawn a shell with elevated privileges (setreuid(515)).
Description
Buffer overflow in tnslsnr of Oracle 8i Database Server 8.1.5 for Linux allows local users to execute arbitrary code as the oracle user via a long command line argument.
Exploits (1)
This exploit targets a buffer overflow vulnerability in Oracle 8i's tnslsnr process on Linux. It overwrites the return address with a stack-based address and executes shellcode to spawn a shell with elevated privileges (setreuid(515)).