2.1.1 Ensure 'extproc' Is Not Present in 'listener.ora'

Information

extproc should be removed from the listener.ora to mitigate the risk that OS libraries can be invoked by the Oracle instance.

Rationale:

extproc allows the database to run procedures from OS libraries. These library calls can, in turn, run any OS command.

Solution

To remediate this recommendation:

Remove extproc from the listener.ora file.

See Also

https://workbench.cisecurity.org/benchmarks/11760

Item Details

Category: SECURITY ASSESSMENT AND AUTHORIZATION, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CA-9, 800-53|SC-7, 800-53|SC-7(5), CSCv7|9.2

Plugin: Windows

Control ID: a989efea085f11db5ae3b582e20bd203d6a4e378068a78f2fe489be6cfb63ce2