{"id":1924,"date":"2015-01-20T07:59:33","date_gmt":"2015-01-20T06:59:33","guid":{"rendered":"http:\/\/www.oradba.ch\/?p=1924"},"modified":"2015-01-20T07:59:33","modified_gmt":"2015-01-20T06:59:33","slug":"oracle-cpu-psu-pre-release-announcement-january-2015","status":"publish","type":"post","link":"https:\/\/www.oradba.ch\/wordpress\/2015\/01\/oracle-cpu-psu-pre-release-announcement-january-2015\/","title":{"rendered":"Oracle CPU \/ PSU Pre-Release Announcement January 2015"},"content":{"rendered":"<p>Oracle has published the Pre-Release Announcement for the first Critical Patch Update in 2015. This Critical Patch Update contains 167 new security vulnerability fixes across all Oracle products. It looks like that this CPU does contain a bunch of critical security fixes for Oracle databases. Actually there are 7 fixes for security vulnerabilities, but none of them is remotely exploitable nor are they for client-only installations. Nevertheless the highest CVSS rating is 9.0. I wonder which OS is affected \ud83d\ude09 <\/p>\n<p>Beside the high CVSS rating, some core components seems to be affected: <\/p>\n<ul>\n<li>Core RDBMS<\/li>\n<li>DBMS_UTILITY<\/li>\n<li>PL\/SQL<\/li>\n<li>Recovery<\/li>\n<li>Workspace Manager<\/li>\n<li>XML Developer&#8217;s Kit for C\n<\/li>\n<\/ul>\n<p>We will see all the details later today, when Oracle is officially releasing the Critical Patch Update for January 2015. Together with my colleagues at Trivadis, we&#8217;ll have a closer look and do some testing. See also <a href=\"http:\/\/www.trivadis.com\/leistungsangebot\/produkte\/infrastructure-toolbox\/tvd-criticalpatchreporttm.html\">Trivadis Critical Patch Updates Report<\/a><\/p>\n<p>More details about the patch will follow soon on the Oracle Security Pages.<\/p>\n<ul>\n<li><a href=\"http:\/\/www.oracle.com\/technetwork\/topics\/security\/alerts-086861.html\">Critical Patch Updates and Security Alerts<\/a><\/li>\n<li><a href=\"http:\/\/www.oracle.com\/technetwork\/topics\/security\/cpujan2015-1972971.html\">Oracle Critical Patch Update Pre-Release Announcement &#8211; July 2014<\/a><\/li>\n<li>Or posted here \ud83d\ude42<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Oracle has published the Pre-Release Announcement for the first Critical Patch Update in 2015. This Critical Patch Update contains 167 new security vulnerability fixes across all Oracle products. It looks like that this CPU does contain a bunch of critical security fixes for Oracle databases. Actually there are 7 fixes for security vulnerabilities, but none [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"#Oracle #CPU \/ #PSU Pre-Release Announcement January 2015","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[8,83,46,114,11,116],"tags":[111],"class_list":["post-1924","post","type-post","status-publish","format-standard","hentry","category-11gr2","category-12cr1","category-cpu","category-psu-2","category-security","category-spu","tag-tvdsecexpert"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_shortlink":"https:\/\/wp.me\/p1aErb-v2","jetpack_sharing_enabled":true,"jetpack-related-posts":[{"id":2008,"url":"https:\/\/www.oradba.ch\/wordpress\/2015\/07\/oracle-cpu-psu-pre-release-announcement-july-2015\/","url_meta":{"origin":1924,"position":0},"title":"Oracle CPU \/ PSU Pre-Release Announcement July 2015","author":"Stefan","date":"10. July 2015","format":false,"excerpt":"Oracle has published the Pre-Release Announcement for the July Critical Patch Update. This Critical Patch Update contains 193 new security vulnerability fixes across all Oracle products. It looks like that this CPU does contain a bunch of critical security fixes for Oracle databases. Actually there are 10 fixes for security\u2026","rel":"","context":"In &quot;12cR1&quot;","block_context":{"text":"12cR1","link":"https:\/\/www.oradba.ch\/wordpress\/category\/oracle-database\/12cr1\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":724,"url":"https:\/\/www.oradba.ch\/wordpress\/2012\/01\/oracle-cpu-psu-pre-release-announcement-januar-2012\/","url_meta":{"origin":1924,"position":1},"title":"Oracle CPU \/ PSU Pre-Release Announcement Januar 2012","author":"Stefan","date":"13. January 2012","format":false,"excerpt":"Oracle has recently published the Pre-Release Announcement for the CPU Patch. This Critical Patch Update contains 78 new security vulnerability fixes for several Oracle products. 2 of these fixes are just for the Oracle Database Server.","rel":"","context":"In &quot;11gR2&quot;","block_context":{"text":"11gR2","link":"https:\/\/www.oradba.ch\/wordpress\/category\/oracle-database\/11gr2\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":1501,"url":"https:\/\/www.oradba.ch\/wordpress\/2013\/10\/oracle-cpu-psu-pre-release-announcement-october-2013\/","url_meta":{"origin":1924,"position":2},"title":"Oracle CPU \/ PSU Pre-Release Announcement October 2013","author":"Stefan","date":"14. October 2013","format":false,"excerpt":"Oracle has published the Pre-Release Announcement for the October CPU\/SPU Patch. This Critical Patch Update contains 126 new security vulnerability fixes for several Oracle products. Despite the large amount of security fixes, it is a rather small update from the database point of view. There are only two security fix\u2026","rel":"","context":"In &quot;11gR2&quot;","block_context":{"text":"11gR2","link":"https:\/\/www.oradba.ch\/wordpress\/category\/oracle-database\/11gr2\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":2686,"url":"https:\/\/www.oradba.ch\/wordpress\/2018\/07\/oracle-cpu-psu-pre-release-announcement-july-2018\/","url_meta":{"origin":1924,"position":3},"title":"Oracle CPU \/ PSU Pre-Release Announcement July 2018","author":"Stefan","date":"13. July 2018","format":false,"excerpt":"Today Oracle has published the Pre-Release Announcement for the July 2018 Critical Patch Update. It's quite a heavy update with not less than 334 security vulnerability fixes across the Oracle products. The Oracle database is relatively prominently represented with 3 security vulnerabilities and a maximal CVSS rating of 9.8. Of\u2026","rel":"","context":"In &quot;11gR2&quot;","block_context":{"text":"11gR2","link":"https:\/\/www.oradba.ch\/wordpress\/category\/oracle-database\/11gr2\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":978,"url":"https:\/\/www.oradba.ch\/wordpress\/2013\/01\/oracle-cpu-psu-pre-release-announcement-january-2013\/","url_meta":{"origin":1924,"position":4},"title":"Oracle CPU \/ PSU Pre-Release Announcement January 2013","author":"Stefan","date":"11. January 2013","format":false,"excerpt":"Once again, Oracle has published the Pre-Release Announcement for the first CPU Patch in 2013. This Critical Patch Update is reasonably small and contains 86 new security vulnerability fixes for several Oracle products. Only one of these fixes is just for the Oracle Database Server.","rel":"","context":"In &quot;11gR2&quot;","block_context":{"text":"11gR2","link":"https:\/\/www.oradba.ch\/wordpress\/category\/oracle-database\/11gr2\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":2397,"url":"https:\/\/www.oradba.ch\/wordpress\/2017\/10\/oracle-cpu-psu-announcement-october-2017\/","url_meta":{"origin":1924,"position":5},"title":"Oracle CPU \/ PSU Announcement October 2017","author":"Stefan","date":"18. October 2017","format":false,"excerpt":"The Oracle open world 2017 is over, the dust just settled down. A perfect time for Oracle to release the October critical patch advisory. With not less than 270 new security vulnerability fixes across the Oracle products it seems to be a rather huge update. From the DB perspective it\u2026","rel":"","context":"In &quot;11gR2&quot;","block_context":{"text":"11gR2","link":"https:\/\/www.oradba.ch\/wordpress\/category\/oracle-database\/11gr2\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]}],"_links":{"self":[{"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/posts\/1924","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/comments?post=1924"}],"version-history":[{"count":1,"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/posts\/1924\/revisions"}],"predecessor-version":[{"id":1926,"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/posts\/1924\/revisions\/1926"}],"wp:attachment":[{"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/media?parent=1924"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/categories?post=1924"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.oradba.ch\/wordpress\/wp-json\/wp\/v2\/tags?post=1924"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}