Oracle’s Recent Critical Patch Update: What’s included and what you need to know!
What is it?
Each quarter, Oracle releases a Critical Patch Update (CPU) bundle. These bundles include a multitude of important patches, ranging from bugs to security fixes. Data Intensity recommends all customers apply these fixes in a regular cadence. Keeping up to date with CPU patches reduces risk and helps to keep your environment secure and stable.
What’s important in this CPU release?
We have just recently completed our evaluation of the latest January 2019 CPU and it includes some very important fixes.
Please note:
- The CPU covers most all Oracle products, including the database (Oracle RDBMS and MySQL), many that are client (internal or external) facing such as E-Business Suite (EBS), Industry Applications, PeopleSoft, and Fusion Middleware.
- There are 16 security fixes for EBS with a maximum CVSS score of 9.1 (on a scale of 10.0). All of these are remotely exploitable without authentication and considered Critical.
- Oracle RDBMS has 3 new fixes, with a maximum CVSS score of 8.2 (on a scale of 10.0).
- Oracle Enterprise Manager has 11 new fixes. 9 of these are remotely exploitable without authentication and considered Critical. The highest reported one is 9.8 (on a scale of 10.0).
- Oracle Fusion Middleware has 62 new vulnerability fixes. 57 of these are remotely exploitable without authentication and considered Critical. The highest reported one is 9.8 (on a scale of 10.0). Oracle is recommending any internet facing system be patched immediately.
Ready to start patching?
To contact Data Intensity for more information regarding the application of these critical patches, use the contact form below.