- Alexander Kornbrust Oracle Security Blog - http://blog.red-database-security.com -

Oracle CPU April 2010 - Prerelease

Dieser Eintrag stammt von Alexander Kornbrust Am 9 Apr 2010 @ 11:33 In Oracle Security | Kommentarfunktion deaktiviert

Yesterday Oracle released the [1] CPU April 2010 Pre-Release. These patches will fix 47 security vulnerabilites. The database patch itself will contain 7 new security vulnerability fixes. None of these vulnerabilities are remote exploitable without authentication.

The highest CVSS base score for the Oracle database is 7.5.

The following components are affected:

• Change Data Capture
• Core RDBMS
• JavaVM
• Oracle XDB
• RDBMS Security
• XML DB

Oracle will fix one of my findings in the April 2010 CPU.

At the DOAG Expertenseminar “[2] Oracle Hardening & Patching / Auditing & Co.” in Berlin (26.04.2010 - 27.04.2010) I will talk about this CPU as well. If you are interested you can attend this 2 day seminar.


Dieser Artikel wurde ausgedruckt ab Alexander Kornbrust Oracle Security Blog: http://blog.red-database-security.com

URL zum Artikel: http://blog.red-database-security.com/2010/04/09/oracle-cpu-april-2010-prerelease/

URLs in this post:
[1] CPU April 2010 Pre-Release: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr20
10.html

[2] Oracle Hardening & Patching / Auditing & Co.: http://mydoag.doag.org/termine/termine.php?tid=400586

Klicken hier zum Drucken.