{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Oracle E-Business Suite 11i ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Application Server 10g ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle9i Collaboration Suite ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle PeopleSoft Enterprise Portal Solutions 8.x ;","product":{"name":"PeopleSoft","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle9i Database Enterprise Edition ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle9i Developer Suite.","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Application Express 2.x ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Database 8.x ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Database 10g ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle PeopleSoft Enterprise Tools 8.x ;","product":{"name":"PeopleSoft","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Collaboration Suite 10.x ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Application Express 1.x ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle9i Database Standard Edition ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle Developer Suite 10g ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}},{"description":"Oracle9i Application Server ;","product":{"name":"N/A","vendor":{"name":"Oracle","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nPlusieurs vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Oracle :\n\n-   Certaines de ces vuln\u00e9rabilit\u00e9s sont dues \u00e0 une erreur sur la\n    v\u00e9rification des param\u00e8tres d'entr\u00e9es de certaines fonctions SQL.\n    Ces vuln\u00e9rabilit\u00e9s peuvent \u00eatre exploit\u00e9es par un utilisateur mal\n    intentionn\u00e9 via une attaque d'injection SQL dans le but de porter\n    atteinte \u00e0 l'int\u00e9grit\u00e9 ou \u00e0 la confidentialit\u00e9 des donn\u00e9es pr\u00e9sentes\n    sur le syst\u00e8me.\n-   D'autres vuln\u00e9rabilit\u00e9s de type \u00ab d\u00e9bordement de m\u00e9moire \u00bb peuvent\n    \u00eatre utilis\u00e9es par un utilisateur mal intentionn\u00e9 pour r\u00e9aliser un\n    d\u00e9ni de service ou ex\u00e9cuter du code arbitraire sur le syst\u00e8me.\n\n## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[],"links":[],"reference":"CERTA-2006-AVI-457","revisions":[{"description":"version initiale.","revision_date":"2006-10-20T00:00:00.000000"}],"risks":[{"description":"D\u00e9ni de service \u00e0 distance"},{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"Atteinte \u00e0 l'int\u00e9grit\u00e9 des donn\u00e9es"},{"description":"Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"}],"summary":null,"title":"Multiples vuln\u00e9rabilit\u00e9s sur les produits Oracle","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Oracle cpuoct2006","url":"http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2006.html"}]}
