CVE-2004-1774
HIGH 7.2EPSS 2.7%
Buffer overflow in the SDO_CODE_SIZE procedure of the MD2 package (MDSYS.MD2.SDO_CODE_SIZE) in Oracle 10g before 10.1.0.2 Patch 2 allows local users to execute arbitrary code via a long LAYER parameter.
- CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 2.67% chance of exploitation in the next 30 days, 85th percentile
- Published
- 2005-04-19
- Updated
- 2024-08-08