[ISN] Oracle issues quarterly set of patches

From: InfoSec News <alerts_at_private>
Date: Fri, 17 Apr 2009 04:19:00 -0500 (CDT)
http://gcn.com/articles/2009/04/16/oracle-vulnerabilities.aspx

By Joab Jackson
GCN.com
April 16, 2009

Oracle has released the latest quarterly round of critical patches for 
its products.

Among the software products being patched are Oracle Database versions 
9i, 10g, and 11G, the Oracle Application Server, the Oracle E-Business 
Suite, PeopleSoft Enterprise Human resources Management System and 
Oracle WebLogic server and portal.

"The impact of these vulnerabilities varies depending on the product, 
component and configuration of the system," said a notice from the 
Homeland Security Department's United States Computer Emergency 
Readiness Team (US-Cert). "Potential consequences include the execution 
of arbitrary code or commands, information disclosure and denial of 
service. Vulnerable components may be available to unauthenticated, 
remote attackers. An attacker who compromises an Oracle database may be 
able to access sensitive information."

[...]


_______________________________________________      
Best Selling Security Books and More!
http://www.shopinfosecnews.org/
Received on Fri Apr 17 2009 - 02:19:00 PDT

This archive was generated by hypermail 2.2.0 : Fri Apr 17 2009 - 02:28:29 PDT