All the latest UK technology news, reviews and analysis

'Highly critical' flaws plague Oracle software

by Matt Chapman

19 Jul 2007

Be the first to comment

  • Tweet this
Oracle
The Oracle flaws could be exploited to bypass security restrictions and conduct SQL injection attacks

A raft of 'highly critical' flaws have been found in several of Oracle's software products. 

The vulnerabilities could allow a remote user to bypass a system's security, manipulate data or cause a denial of service, according to Secunia.

"Some of these have unknown impacts, while others can be exploited to bypass certain security restrictions and conduct SQL injection attacks, cause denial of service, and potentially compromise a vulnerable system," said a Secunia advisory, which rated the vulnerabilities as 'highly critical'. 

Oracle has already issued a patch to fix the flaws in its software and has advised users to apply it immediately.

"Due to the threat posed by a successful attack, Oracle strongly recommends that fixes are applied as soon as possible," said Oracle in a security statement. "This Critical Patch Update contains 45 new security fixes across all products."

The problems were discovered in a range of applications, including Oracle Application Express, Application Server, Collaboration Suite, Oracle Database, E-Business Suite, PeopleSoft Enterprise CRM and Oracle Secure Enterprise Search.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

98%

0%

1%

0%

1%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

c# or asp.net Software Developer

Job Specification For: Software Developer...

Project Manager for UI Development

A global Investment Bank requires a Project Manager to...

Web Developer, .Net Software Developer - ASP.Net, C#, HTML, CSS

Web Developer, .Net Software Developer - ASP.Net, C...

Verint Voice Recording Support Engineer

Verint Voice Recording Support Engineer (Verint / Nice...

To send to more than one email address, simply separate each address with a comma.