Skip to Main Content

Oracle Database Express Edition (XE)

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

How to fix TNS Poison Vulnerability Issue (CVE-2012-1675) for 11g Express Edition

user6142091Jan 18 2017 — edited Jan 20 2017

I have tried to set “DYNAMIC_REGISTRATION_LISTENER = OFF” and “SECURE_REGISTER_LISTENER = (IPC)” work-around, but this will make remote access to the database fails. If I set “VALID_NODE_CHECKING_REGISTRATION = LOCAL”, the vulnerability issue is still there.

This post has been answered by Gaz in Oz on Jan 19 2017
Jump to Answer
Comments
Locked Post
New comments cannot be posted to this locked post.
Post Details
Locked on Feb 17 2017
Added on Jan 18 2017
8 comments
13,704 views