Emergency Workaround For Oracle 0-Day 152
Almost Live writes "Oracle has released an out-of-cycle alert to offer mitigation for a zero-day exploit that's been posted on the Internet. The emergency workaround addresses an unpatched remote buffer overflow that's remotely exploitable without the need for a username and password, and can result in compromising the confidentiality, integrity, and availability of the targeted system." Whoever published the vulnerability and matching exploit code did not contact Oracle first.
Whoops, that was my fault (Score:4, Funny)
I sent the email to 0racle. Too much l33tness, sorry.
nice timing (Score:5, Funny)
This would seem to be a pretty decent answer to the previous thread (How do geeks get exercise).
That's why I use... (Score:2, Funny)
Worthless (Score:5, Funny)
For christ's sake. At least link to the fucking Oracle page [oracle.com].
If I wanted to read ZDNet, I'd just go to fucking ZDNet.
It's a fucking Oracle !! Should it have known ?? (Score:2, Funny)
Some Oracle That Is !!
"0 day?" (Score:1, Funny)
this exploit is over 10 days old now, slashdot you are wayyy to late on reporting this.
Re:Haha! (Score:1, Funny)
hack my trouble ticket system (Score:2, Funny)
Sweet, I've been wondering how to hack the trouble ticket system's Oracle back end at work. Now when a deploy has issues in production that weren't seen in development, I can retroactively fix my ticket attachments so it looks like the system engineers screwed up the deploy. Muahahahahaha!!!!
A misnomer (Score:2, Funny)
Re:nice timing (Score:5, Funny)
Re:Another victim of C/C++ lack of array safety (Score:4, Funny)
And Princess Diana is a victim of cars lack of a 30 MPH speed cap.
Re:Worthless (Score:1, Funny)
Lose the language, you unrefined ruffian. Do you talk to your mother with that mouth? Do you think it makes your point (or lack thereof) stronger? Got masculinity issues?
Re:That's why I use... (Score:5, Funny)
Re:Another victim of C/C++ lack of array safety (Score:5, Funny)
What's love got to do with it? In fact, if you go for money, you are probably more likely to find a good std::vector. Sorry, old joke. Couldn't resist.
Re:That's why I use... (Score:5, Funny)
[command executing...]
[timeout ID-10-T - CPU has entered sleep mode]
Re:One man's ruffianity... (Score:5, Funny)
And the correct answer is "No, but I kiss yours."
Re:Another victim of C/C++ lack of array safety (Score:3, Funny)
Actually a better example of C/C++ knowing the size of the arrays would of been the sizeof() operator.
You're thinking of the infamous `size've` operator.