Oracle Plugs 36 Holes in Critical Patch Update
By
Oracle patches multiple security flaws, including one that was at the center of a debate on disclosure at the Black Hat Federal briefings. One fix closes a gaping flaw in the Oracle PL/SQL Gateway that has been around for over six months!
Database server giant Oracle on April 18 shipped its scheduled quarterly critical patch update with fixes for 36 security vulnerabilities in several enterprise-facing products. The mega update includes a fix for a gaping flaw in the Oracle PL/SQL Gateway that was reported to Oracle more than six months ago and was the subject of a war of words between Oracle and database security expert David Litchfield at the Black Hat Federal security conference earlier in 2006.
Comments are closed.