Oracle FAQ Your Portal to the Oracle Knowledge Grid
HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US
 

Home -> Community -> Mailing Lists -> Oracle-L -> Re: Security Hole

Re: Security Hole

From: Mogens N¸rgaard <mln_at_miracleas.dk>
Date: Mon, 22 Apr 2002 11:33:45 -0800
Message-ID: <F001.0044B665.20020422113345@fatcity.com>


It's even worse if British style humor is involved. Only Australians, Danes and crazy people will understand it, then. I still like the Grant Any Dictionary command, Connor. Let's try it at Oracle World in Copenhagen...

Mogens

G.Plivna_at_itsystems.lv wrote:

>Khe, khe I would like to oppose a little bit
>
>1. healthy humor is always good
>2. If people are so inexperienced that they cannot understand this
>particular joke then there is no place for them in at least production db
>
>Gints Plivna
>IT Sistçmas, Meríeïa 13, LV1050 Rîga
>http://www.itsystems.lv/gints/
>
>
>
>
> "Dale Edgar"
> <dale_at_databee.com To: Multiple recipients of list ORACLE-L <ORACLE-L_at_fatcity.com>
> > cc:
> Sent by: Subject: Re: Security Hole
> root_at_fatcity.com
>
>
> 2002.04.17 15:28
> Please respond to
> ORACLE-L
>
>
>
>
>
>
>>The problem can be worked around by issuing:
>>
>>grant dba, select any table, select any dictionary to
>>public;
>>
>>Then the bug does not appear to be observed :-)
>>
>
>A note of caution. One has to be a bit careful with this sort of joke
>around
>inexperienced people. The humor of the joke is largely based on the
>magnitude of the consequences and requires prior knowledge of those
>consequences. Since these types of joke are largely said in mock
>seriousness
>inexperienced people can miss the point and take it as real advice. The
>problem is even greater if your audience contains people for whom english
>is
>a second language.
>
>For example, I once worked on an oil rig where the new guy was tasked with
>cleaning some grease off the deck. He enquired, quite innocently, as to
>what
>he should use to help get the grease up. Someone replied "Oh just use the
>Sodium Hydroxide, that'll get it good and clean". It was common knowledge
>that Sodium Hydroxide (a strong Base) is one of the most corrosive things
>around and to use it you get kitted out in all sorts of thick rubber gear
>and require special training. Its nasty nasty stuff and you would never use
>it for casual cleaning - which was the point of the joke. However, the new
>guy didn't know this and went ahead and used it - and lost most of both
>hands.
>
>Just my $0.02
>- Dale
>----------
>Check out the free DataBee DBATool - http://www.databee.com/dt_home.htm
>
>
>--
>Please see the official ORACLE-L FAQ: http://www.orafaq.com
>--
>Author: Dale Edgar
> INET: dale_at_databee.com
>
>Fat City Network Services -- (858) 538-5051 FAX: (858) 538-5051
>San Diego, California -- Public Internet access / Mailing Lists
>--------------------------------------------------------------------
>To REMOVE yourself from this mailing list, send an E-Mail message
>to: ListGuru_at_fatcity.com (note EXACT spelling of 'ListGuru') and in
>the message BODY, include a line containing: UNSUB ORACLE-L
>(or the name of mailing list you want to be removed from). You may
>also send the HELP command for other information (like subscribing).
>
>
>
>

-- 
Please see the official ORACLE-L FAQ: http://www.orafaq.com
-- 
Author: Mogens =?windows-1257?Q?N=B8rgaard?=
  INET: mln_at_miracleas.dk

Fat City Network Services    -- (858) 538-5051  FAX: (858) 538-5051
San Diego, California        -- Public Internet access / Mailing Lists
--------------------------------------------------------------------
To REMOVE yourself from this mailing list, send an E-Mail message
to: ListGuru_at_fatcity.com (note EXACT spelling of 'ListGuru') and in
the message BODY, include a line containing: UNSUB ORACLE-L
(or the name of mailing list you want to be removed from).  You may
also send the HELP command for other information (like subscribing).
Received on Mon Apr 22 2002 - 14:33:45 CDT

Original text of this message

HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US