Threat Level: green Handler on Duty: Johannes Ullrich

SANS ISC: Oracle July 2014 Update Pre-Notification - Internet Security | DShield SANS ISC InfoSec Forums


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Oracle July 2014 Update Pre-Notification

Oracle has released a preview of patches to be released, seen here, on Tuesday, July 15, 2014, and includes updates to business critical systems, such as Oracle Database, WebLogic server, and Fusion.  The most concerning aspect of the majority of vulnerabilities discussed is the one phrase â??may be exploited over a network without the need for a username and passwordâ?.  The most critical update, imho, that is being released Tuesday is the Java fixes that are being released (20 security fixes!), which give the vulnerability a pristine CVSS Base Score of 10!!  Woohoo, way to go Oracle and Team Java!

But please donâ??t take my word for all of this, go take a look for yourself, and see what the week ahead has in store.

tony d0t carothers --gmail

Tony

150 Posts
ISC Handler

Sign Up for Free or Log In to start participating in the conversation!