Newsletter:

Skip Navigation LinksHome > News > Security > 'Highly critical' flaws plague Oracle software

'Highly critical' flaws plague Oracle software

By Matt Chapman
20 July 2007 12:45PM
Tags: highly | critical | flaws | plague | oracle | software

Secunia warns of DoS attacks, security bypass and manipulation of data. A raft of 'highly critical' flaws have been found in several of Oracle's software products.

The vulnerabilities could allow a remote user to bypass a system's security, manipulate data or cause a denial of service, according to Secunia.

"Some of these have unknown impacts, while others can be exploited to bypass certain security restrictions and conduct SQL injection attacks, cause denial of service, and potentially compromise a vulnerable system," said a Secunia advisory, which rated the vulnerabilities as 'highly critical'. 

Oracle has already issued a patch to fix the flaws in its software and has advised users to apply it immediately.

"Due to the threat posed by a successful attack, Oracle strongly recommends that fixes are applied as soon as possible," said Oracle in a security statement. "This Critical Patch Update contains 45 new security fixes across all products."

The problems were discovered in a range of applications, including Oracle Application Express, Application Server, Collaboration Suite, Oracle Database, E-Business Suite, PeopleSoft Enterprise CRM and Oracle Secure Enterprise Search.

Copyright © 2008 vnunet.com

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch



Product Reviews

Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Star Rating
On the surface, RoboForm Enterprise starts out looking like a single sign-on product, but that is just on the...
Star Rating
The Symark PowerBroker is a policy-driven, privileged access control application.
Star Rating
The Symark PowerKeeper is a hardened appliance. It comes with a sealed operating system that provides a...
iTnews 2009 Job Survey

TopTopics
(71644) -  top
(3767) -  microsoft
(3247) -  acma
(2728) -  company
(2502) -  telstra
(2268) -  data
(2212) -  terria
(2079) -  content
(1994) -  broadband
(1895) -  isp
(1860) -  internode
(1552) -  centre
(1512) -  linux
(1494) -  filtering
(1460) -  voip