Oracle Preps Critical Update with 24 Security Fixes | eWeek

Oracle Preps Critical Update with 24 Security Fixes

Written By
Brian Prince
Brian Prince
Jan 8, 2010
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Oracle is planning to release an update that includes 24 security patches affecting numerous products, including the Oracle Database and Oracle E-Business Suite.

The update addresses 10 security vulnerabilities related to the database, including one in Oracle Secure Backup. Two of the vulnerabilities can be exploited remotely without authentication, Oracle said in a pre-patch advisory.

Oracle BEA products are the subject of five security fixes, all of which are remotely exploitable over a network without a user name and password. One of the security holes plugged by the update is a flaw in Oracle JRockit with a CVSS base score of 10.0, the highest score possible.

The update plugs three remotely exploitable security holes in Oracle’s application server, as well as providing a fix for the PeopleSoft and JD Edwards Suite. The update also has two new security fixes for the Oracle Primavera Products Suite and three for Oracle Application Server.

“These vulnerabilities are not remotely exploitable without authentication, i.e., may not be exploited over a network without the need for a user name and password,” Oracle said regarding the Primavera flaws.

More information about the critical patch update is available here. The update is scheduled to be released Jan. 12, the same day as Microsoft’s Patch Tuesday fix.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.