All the latest UK technology news, reviews and analysis

Oracle warns of serious flaw in HTTP Server products

by Shaun Nichols

20 Sep 2011

Be the first to comment

  • Tweet this

Oracle is advising administrators to update systems following the discovery of a security flaw in the company's HTTP Server products based on Apache 2.0 or 2.2.

The vulnerable component lies in the Fusion Middleware 11g and Application Server 10g platforms, and could be exploited to cause a denial-of-service attack.

The flaw could be remotely targeted without the need for local access or valid credentials such as username and password.

Full details can be found in the Oracle Security Alert for CVE-2011-3192.

"Due to the threat posed by a successful attack, Oracle strongly recommends that customers apply security alert fixes as soon as possible," the company said.

Oracle's release follows Microsoft's latest Patch Tuesday update which included five security fixes and an update to revoke several DigitNotar certificates which had been compromised by hackers.

Oracle is also about to deliver an update to its systems platform. The 26 September event is just days before the annual OpenWorld user conference.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

30%

1%

12%

57%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Support Analyst

IT Support Analyst (initial 6 month fixed term) Cirencester...

Java Developer - Grad / Web / Mobile - Manchester

Java Developer - Graduate / Budding Superstar opportunity...

Solutions Consultant - JEE, PHP, Project Lead - Midlands

Solution Consultant - JEE, Support, Project Lead, SQL...

C++ Developer - Financial Vendor

C++ Developer - C++, STL, Boost, Delphi, Concurrency...

To send to more than one email address, simply separate each address with a comma.