¡¾·ì϶¹«¸æ¡¿Oracle Êý¾Ý¿âÔ¶³ÌÊÕÊÜ·ì϶(CVE-2025-30751)
°ä²¼¹¦·ò 2025-07-16Ò»¡¢¡¢¡¢·ì϶¸ÅÊö
·ì϶Ãû³Æ | Oracle Êý¾Ý¿âÔ¶³ÌÊÕÊÜ·ì϶ | ||
CVE ID | CVE-2025-30751 | ||
·ì϶ÀàÐÍ | Éí·ÝÑéÖ¤ÈÆ¹ý | ·¢ÏÖ¹¦·ò | 2025-07-16 |
·ì϶ÆÀ·Ö | 8.8 | ·ì϶µÈ¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | δ¹«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
OracleÊý¾Ý¿âÊÇÈ«Çò¿í·ºÊ¹ÓõĹØÏµÐÍÊý¾Ý¿âÖÎÀíϵͳ£¨RDBMS£©£¬£¬£¬Óɼ׹ÇÎĹ«Ë¾£¨Oracle Corporation£©¿ª·¢¡£¡£¡£¡£ËüÖ§³Ö¶àÖÖ²Ù×÷ϵͳƽ̨£¬£¬£¬Ìṩ¸ß»úÄÜ¡¢¡¢¡¢¿ÉÀ©´óÐԺͿ¿µÃסÐÔ¡£¡£¡£¡£OracleÊý¾Ý¿âÓÃÓÚ´æ´¢¡¢¡¢¡¢ÖÎÀíºÍ²Ù×÷´óÁ¿Êý¾Ý£¬£¬£¬¿í·ºÀûÓÃÓÚÆóÒµ¼¶ÀûÓᢡ¢¡¢Êý¾Ý²Ö¿â¡¢¡¢¡¢ÔÚÏßÊÂÎñ´¦Öã¨OLTP£©ÏµÍ³µÈ³¡¾°¡£¡£¡£¡£ÆäÖ÷Ìâ¸öÐÔÔ̺¬Ö§³ÖSQL¡¢¡¢¡¢ACIDÊÂÎñ¡¢¡¢¡¢Êý¾Ý·ÖÇø¡¢¡¢¡¢±¸·Ý¸´Ô¡¢¡¢¡¢ÒÔ¼°×³´óµÄ°²È«½ÚÖÆ»úÖÆ¡£¡£¡£¡£OracleÊý¾Ý¿â»¹Ö§³Ö¸ß¿ÉÓÃÐÔºÍÉ¢²¼Ê½Êý¾Ý¿âÖÎÀí¡£¡£¡£¡£
2025Äê7ÔÂ16ÈÕ£¬£¬£¬OG¶«·½Ìü¼¯ÍÅVSRC¼à²âµ½OracleÊý¾Ý¿â·þÎñÆ÷×é¼þ´æÔÚÔ¶³ÌÊÕÊÜ·ì϶¡£¡£¡£¡£¸Ã·ì϶¿É±»µÍȨÏÞ¹¥»÷ÕßÀûÓ㬣¬£¬¹¥»÷ÕßÖ»Ðè¾ß±¸Create SessionºÍCreate ProcedureȨÏÞ£¬£¬£¬²¢Í¨¹ýOracle Net»ñÈ¡ÍøÂç½Ó¼ûȨÏÞ¼´¿ÉÌáÒé¹¥»÷¡£¡£¡£¡£Ò»µ©³É¹¦ÀûÓ㬣¬£¬¸Ã·ì϶¿ÉÄܵ¼Ö¹¥»÷Õ߯ëÈ«ÊÕÊÜOracleÊý¾Ý¿â¡£¡£¡£¡£·ì϶ÆÀ·Ö8.8·Ö£¬£¬£¬·ì϶¼¶±ð¸ßΣ¡£¡£¡£¡£
¶þ¡¢¡¢¡¢Ó°ÏìÁìÓò
Èý¡¢¡¢¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£º£º£ºhttps://www.oracle.com/security-alerts/cpujul2025.html
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£¡£¡£¡£
3.3 ͨÓý¨Òé
?ÆôÓÃÇ¿ÃÜÂëÕ½Êõ²¢ÉèÖÃΪ¶¨ÆÚÅú¸Ä¡£¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ