[
From SecurityFocus ]
Reportedly Oracle Database 9i is affected by an SQL command buffer overflow vulnerability. This issue is due to a failure of the application to properly verify user-supplied string lengths prior to copying them into finite process buffers.
The article continues at
http://www.securityfocus.com/bid/11120