Critical Oracle Database Security Bugs Patched in Update

Critical Oracle Database Security Bugs Patched in Update

Written By
Brian Prince
Brian Prince
Jul 14, 2010
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Oracle pushed out 59 security patches July 13, including 13 for its database portfolio.

Six of the 13 database vulnerabilities are for the Oracle Database server. Four of these can be exploited remotely over a network without authentication, Oracle advised. Both of the vulnerabilities in the TimesTen In-Memory Database can be exploited remotely without authentication as well, as can three of the five bugs patched in Oracle Secure Backup.

“As is typical for the most recent Oracle CPUs, the most severe are in the network layer — these are very dangerous because they are exploitable remotely and without authentication; if someone were to get through they would have arbitrary code execution capabilities and could literally do anything on the target machine,” explained Roy Fox, head of security research at Sentrigo.

Twenty-one of the 59 fixes affected the Solaris product suite, which the company acquired when it bought Sun Microsystems. Seven of these can be exploited remotely without authentication. Among the Oracle Solaris Suite products affected by the vulnerabilities are Solaris Studio and Sun GlassFish Enterprise Server.

Seventeen security fixes for Oracle Applications, while seven are coming for Oracle Fusion Middleware. There is also a fix for Oracle Enterprise Manager Grid Control.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.