|
COMMAND Oracle9i TSN DoS attack SYSTEMS AFFECTED Oracle 9.0.1.1 (others ??) PROBLEM Andrey Gordienko [http://www.safety-lab.com] posted : To crash Oracle9i you need to send ONE TCP packet (#$00 = 1 byte) to 1521 port and you can fogot about Oracle (CPU - 100%). You cant connect anymore unless you restart TSNLISTEN. Exploit available from : www.safety-lab.com (ShadowDoSAnalyzer) SOLUTION None yet.