Has the extproc buffer overflow bug (#57) been fixed in 10.2?
I'm looking for confirmation that I don't need to install patches or workarounds for this problem:
Utilizing an Oracle Listener configured with a TCP protocol address, a knowledgeable and malicious user can write an exploit that connects to an Oracle Database server's EXTPROC OS process without having to provide a database username and password. As such, it is possible to make arbitrary calls to the underlying OS and potentially gain unauthorized administrative access to the machine hosting the Oracle Database server. The EXTPROC functionality is installed by default in the Oracle Database installation if the "Typical Installation" option is chosen from the Oracle Universal Installer menu. EXTPROC is used by Oracle'