AllBestArticles.com AllBestArticles.com AllBestArticles.com Services Blog AllBestArticles.com Write Articles AllBestArticles.com Videos AllBestArticles.com RSS AllBestArticles.com News AllBestArticles.com Sitemap
   

Oracle Plans to Address 73 Security Vulnerabilities in Next Quarterly Critical Patch Update


Article Written By: eccuni

Add Your Picture Vulnerabilities are identified by professionals qualified in IT degree programs and security certifications such as penetration testing. Developers encourage both in-house and independent security researchers to detect and report security flaws so that they can be mitigated before exploitation by attackers.

Oracle is all set for the upcoming critical patch update. The pre-release announcement by the company indicates that in all 73 vulnerabilities associated with numerous products will be mitigated during the next critical patch update. The update will mitigate security vulnerabilities associated with Oracle database server, fusion middleware, enterprise manager, e-business suite, supply chain products, PeopleSoft, JD Edwards suite, Siebel CRM, industry applications, Sun products and Open office suite.

The vulnerabilities are assigned scores based on the prerequisites for exploiting the vulnerability, ease of exploit, and impact of the attack on availability, confidentiality and integrity. Base scores range from 0.0 to 10.0 with ten being the most severe vulnerability. They may be caused by technological flaws, programming errors, and other human errors. Developers are required constantly upgrade their technical skills through online IT degree courses, training programs and refresher courses to deal with ever evolving threats.

The vulnerabilities affect components such as application service level management, database vault, Oracle help, security service, warehouse builder, UIX and network foundation. Two of the six do not require authentication for exploitation. Highest base score for security flaws affecting database server is 6.5. The update will mitigate 9 flaws associated with fusion middleware, 6 of which are exploitable without authentication.

4 vulnerabilities will be fixed in Oracle applications, 2 of which are exploitable without authentication. The vulnerabilities have been assigned a base score of 4.3 and affect application object library, applications install, and web ADI. The update will resolve a flaw in Supply chain products suite, which is exploitable without authentication. Highest base score for vulnerability in supply chain products suite is 4.3 and affects Agile technology program.

14 security flaws have related to PeopleSoft Suite will be fixed in the upcoming critical patch, 1 of which is exploitable without authentication. Highest base score for security flaws associated with PeopleSoft suite is 4.3 and affects PeopleSoft Enterprise, Enterprise CRM, ELS, HRMS and People tools. The critical patch update will resolve 8 issues associated with JD Edwards suite, 7 of which are exploitable without authentication. Highest base score for vulnerabilities in JD Edwards suite is 6.4 and affects EnterpriseOne tools.

The update will address a vulnerability associated with industry applications, which affects InForm. Highest base score for vulnerability in industry applications is 5.5. 8 security flaws will be mitigated in Sun products suite, seven of which are exploitable without authentication. Oracle has assigned highest severity score of 10 for security flaws affecting Sun products suite.

The upcoming critical patch update will fix 8 security issues related to Open Office suite, of which 7 are exploitable without authentication. Highest base score for security flaws in Open Office suite is 9.3. Open Office, StarOffice and StarSuite are affected by the vulnerabilities.

Online IT courses, e-tutorials, security blogs and alerts from computer emergency response teams could help users in gaining insights on security threats, their implications and importance of security updates. Users must keep track of the security releases and install necessary updates to safeguard their systems and data from unauthorized access.


About the Author

Online IT courses, IT degree programs



You Can Link Directly to "Oracle Plans to Address 73 Security Vulnerabilities in Next Quarterly Critical Patch Update" by using the url:
http://www.allbestarticles.com//internet/security/oracle-plans-to-address-73-security-vulnerabilities-in-next-quarterly-critical-patch-update.html

This Article Has Been Published on Mon, 18 Apr 2011 and Read 300 Times


Find All Best Articles at http://www.allbestarticles.com








Rating: Not yet rated



Comments

No comments posted. Comments are closed.

Related information on Security

Counter Crime Agencies in Finland Bust Cybercrime Ring
Security Professionals Detect Gold-rush Spam
Law Enforcement Authorities Bust Vishing Scam
Microsoft Cautions Users of Vulnerabilities in Chrome and Opera
Oracle Plans to Address 73 Security Vulnerabilities in Next Quarterly Critical Patch Update
Step-By-Step Procedure of SSL Certificate Installation
The Value of Website Security Testing Through a Regular Audit
The Importance of Web Application Penetration Testing
Are You a Target for Social Networking Identity Theft?
Gateway security is vitally important
Types of Internet Scams - Don't be a victim
You Disregard Application Surety
Other forms of internet security
How To Protect PC from Spywares and Adware
Secure Deletion Private Data: Tips And Tricks For Windows
How to delete Firefox Mozilla internet temporary files?
How to avoid viruses
Importance of PC Anti Spyware and Spyware blockers