¡¾·ì϶¹«¸æ¡¿Oracle Êý¾Ý¿âÔ¶³ÌÊÕÊÜ·ì϶(CVE-2025-30751)
°ä²¼¹¦·ò 2025-07-16Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | Oracle Êý¾Ý¿âÔ¶³ÌÊÕÊÜ·ì϶ | ||
CVE ID | CVE-2025-30751 | ||
·ì϶ÀàÐÍ | Éí·ÝÑéÖ¤ÈÆ¹ý | ·¢ÏÖ¹¦·ò | 2025-07-16 |
·ì϶ÆÀ·Ö | 8.8 | ·ì϶µÈ¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | δ¹«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
OracleÊý¾Ý¿âÊÇÈ«Çò¿í·ºÊ¹ÓõĹØÏµÐÍÊý¾Ý¿âÖÎÀíϵͳ£¨RDBMS£©£¬Óɼ׹ÇÎĹ«Ë¾£¨Oracle Corporation£©¿ª·¢¡£ËüÖ§³Ö¶àÖÖ²Ù×÷ϵͳƽ̨£¬Ìṩ¸ß»úÄÜ¡¢¿ÉÀ©´óÐԺͿ¿µÃסÐÔ¡£OracleÊý¾Ý¿âÓÃÓÚ´æ´¢¡¢ÖÎÀíºÍ²Ù×÷´óÁ¿Êý¾Ý£¬¿í·ºÀûÓÃÓÚÆóÒµ¼¶ÀûÓá¢Êý¾Ý²Ö¿â¡¢ÔÚÏßÊÂÎñ´¦Öã¨OLTP£©ÏµÍ³µÈ³¡¾°¡£ÆäÖ÷Ìâ¸öÐÔÔ̺¬Ö§³ÖSQL¡¢ACIDÊÂÎñ¡¢Êý¾Ý·ÖÇø¡¢±¸·Ý¸´Ô¡¢ÒÔ¼°×³´óµÄ°²È«½ÚÔì»úÔì¡£OracleÊý¾Ý¿â»¹Ö§³Ö¸ß¿ÉÓÃÐÔºÍÉ¢²¼Ê½Êý¾Ý¿âÖÎÀí¡£
2025Äê7ÔÂ16ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½OracleÊý¾Ý¿â·þÎñÆ÷×é¼þ´æÔÚÔ¶³ÌÊÕÊÜ·ì϶¡£¸Ã·ì϶¿É±»µÍȨÏÞ¹¥»÷ÕßÀûÓ㬹¥»÷ÕßÖ»Ðè¾ß±¸Create SessionºÍCreate ProcedureȨÏÞ£¬²¢Í¨¹ýOracle Net»ñÈ¡ÍøÂç½Ó¼ûȨÏÞ¼´¿ÉÌáÒé¹¥»÷¡£Ò»µ©³É¹¦ÀûÓ㬸÷ì϶¿ÉÄܵ¼Ö¹¥»÷Õ߯ëÈ«ÊÕÊÜOracleÊý¾Ý¿â¡£·ì϶ÆÀ·Ö8.8·Ö£¬·ì϶¼¶±ð¸ßΣ¡£
¶þ¡¢Ó°ÏìÁìÓò
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://www.oracle.com/security-alerts/cpujul2025.html
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
?ÆôÓÃÇ¿ÃÜÂëÕ½Êõ²¢ÉèÖÃΪ¶¨ÆÚÅú¸Ä¡£


¾©¹«Íø°²±¸11010802024551ºÅ