Newsletter:

Skip Navigation LinksHome > News > Security > Oracle implements security warning programme

Oracle implements security warning programme

By Tom Sanders
12 January 2007 02:28PM
Tags: oracle | security

Pre-release warnings allows enterprises to prepare for upcoming patch
releases.

Oracle has started to issue so-called pre-release announcements ahead of its quarterly patch releases.

The warnings provide IT staff with information about the applications that the enterprise software vendor plans to patch, as well as the number of security fixes that will be distributed and the Common Vulnerability Scoring System code (CVSS) for the most severe fix in each major product category.

Pre-release information for Oracle's January 16 patch is currently posted on the vendor's website. The database and enterprise software vendor plans to issue 52 security updates. 

Microsoft pioneered the practice of sending out pre-release warnings to allow IT support staff to prepare for upcoming patch releases.

Oracle's decision comes nearly two months after security researchers with NGS Software compared the security record for the firm's database to that of Microsoft's SQL Server and found that Microsoft was trailing far behind Microsoft.

Researcher David Litchfield at the time warned that Oracle's security practices have failed to keep up with the evolution in security threats.

The NGS report wasn't the first to poke holes in Oracle's security record.

The firm over the past years has made several changes to it security practices. Among things it has adopted a regular patch release cycle to help IT staff plan and prepare for new updates.

Copyright © 2008 vnunet.com

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch





Product Reviews

Star Rating
The AdventNet Manage-Engine Password Manager Pro provides a complete system for password management in one...
Star Rating
The Cyber-Ark Enterprise Password Vault, or EPV, is a high-end password management powerhouse.
Star Rating
The Hitachi ID-Archive sets its focus on password randomisation.
Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Unified Communications Podcast Centre

TopTopics
(6577) -  internet
(6411) -  iinet
(6386) -  copyright
(6386) -  afact
(5987) -  servers
(5987) -  mipi
(4766) -  telstra
(4452) -  broadband
(4409) -  nbn
(2852) -  internode
(2403) -  microsoft
(1877) -  network
(1453) -  data
(1365) -  google
(1281) -  software