Oracle has warned its customers of critical flaws in the security technology of some of its application and database server products.
The flaws are in the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) of Oracle 8i and 9i Database Server, Oracle 9i Application Server, and versions 8 and 9 of the Oracle HTTP Server.
If exploited, the flaws can allow a client to take over the server.
In a statement, the company said: "Oracle is informing customers about SSL vulnerabilities detailed in Cert Advisory CA-2003-26 and SSL vulnerabilities detailed in several older Common Vulnerabilities and Exposures candidates.
"Oracle recommends that customers apply the patches for these vulnerabilities."
SSL and TLS are both widely used for protecting data transferred over the internet. In order to take advantage of the vulnerability, hackers would have to create a specially crafted X.509 certificate, which would allow server control.
"Oracle has always been strong on security so this is a surprise," said Professor Neil Barrett, technical director at Information Risk Management.
"Long before Microsoft got into Trusted Computing Oracle was running a well respected security programme, and they're well known for writing secure code."
Further information, and patches for the flaws, can be downloaded here.
Cotton seedling freezes to death as Chang'e-4 shuts down for the Moon's 14-day lunar night
Fortnite easily out-earns PUBG, Assassin's Creed Odyssey and Red Dead Redemption 2 in 2018
Meteor showers as a service will be visible for about 100 kilometres in all directions
Saturn's rings only formed in the past 100 million years, suggests analysis of Cassini space probe data
New findings contradict conventional belief that Saturn's rings were formed along with the planet about 4.5 billion years ago