---------------------------------------------------------------------- A new version (0.9.0.0 - Release Candidate 1) of the free Secunia PSI has been released. The new version includes many new and advanced features, which makes it even easier to stay patched. Download and test it today: https://psi.secunia.com/ Read more about this new version: https://psi.secunia.com/?page=changelog ---------------------------------------------------------------------- TITLE: Oracle Products Multiple Vulnerabilities SECUNIA ADVISORY ID: SA28518 VERIFY ADVISORY: http://secunia.com/advisories/28518/ CRITICAL: Highly critical IMPACT: Unknown WHERE: >From remote SOFTWARE: Oracle Database 10.x http://secunia.com/product/3387/ Oracle Application Server 10g http://secunia.com/product/3190/ Oracle Collaboration Suite 10.x http://secunia.com/product/2450/ Oracle E-Business Suite 12.x http://secunia.com/product/13979/ Oracle E-Business Suite 11i http://secunia.com/product/442/ Oracle PeopleSoft Enterprise Tools 8.x http://secunia.com/product/9411/ Oracle9i Database Standard Edition http://secunia.com/product/358/ Oracle9i Database Enterprise Edition http://secunia.com/product/359/ DESCRIPTION: Multiple vulnerabilities with unknown impacts have been reported for various Oracle products, which can be exploited by malicious users and malicious people. The vulnerabilities are caused due to unspecified errors. No more information is currently available. The vulnerabilities are reported in the following products and versions: • Oracle Database 11g, version 11.1.0.6 • Oracle Database 10g Release 2, versions 10.2.0.2, 10.2.0.3 • Oracle Database 10g, version 10.1.0.5 • Oracle Database 9i Release 2, versions 9.2.0.8, 9.2.0.8DV • Oracle Application Server 10g Release 3 (10.1.3), versions 10.1.3.0.0, 10.1.3.1.0, 10.1.3.3.0 • Oracle Application Server 10g Release 2 (10.1.2), versions 10.1.2.0.2, 10.1.2.1.0, 10.1.2.2.0 • Oracle Application Server 10g (9.0.4), version 9.0.4.3 • Oracle Collaboration Suite 10g, version 10.1.2 • Oracle E-Business Suite Release 12, versions 12.0.0 - 12.0.3 • Oracle E-Business Suite Release 11i, versions 11.5.9 - 11.5.10 CU2 • Oracle PeopleSoft Enterprise PeopleTools versions 8.22, 8.48, 8.49 SOLUTION: Apply patches (see the vendor's advisory). PROVIDED AND/OR DISCOVERED BY: The vendor credits: * CERT/CC * Esteban Martinez Fayo of Application Security, Inc. * Pete Finnigan * Joxean Koret * Alexander Kornbrust of Red Database Security * Ali Kumcu of inTellectPro * David Litchfield of NGS Software * Mariano Nunez Di Croce of CYBSEC S.A. * Alexandr Polyakov of Digital Security ORIGINAL ADVISORY: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------