Oracle Ocak 2009 itibariyle Kritik Yama Güncellemesi'ni (CPU) yayınladı. Birçok ürününde uzaktan yetkisiz kod ya da komut koşturma açıklıkları görülmektedir.
Kaynak:
Oracle Kritik Yama Güncellemeleri
Seviye:
Acil
Bildiri Sürümü:
-
Açıklanma Zamanı:
08.01.2009
Yenilenme Zamanı:
19.01.2009
Etkilenen Sistemler:
Oracle TimesTen In-Memory Database 7.0.5.4.0
Oracle TimesTen In-Memory Database 7.0.5.3.0
Oracle TimesTen In-Memory Database 7.0.5.2.0
Oracle TimesTen In-Memory Database 7.0.5.1.0
Oracle Secure Backup 10.2.0.3
Oracle Secure Backup 10.2.0.2
Oracle Secure Backup 10.1.0.3
Oracle Secure Backup 10.1.0.2
Oracle Secure Backup 10.1.0.1
Oracle Oracle9i Standard Edition 9.2 .8DV
Oracle Oracle9i Standard Edition 9.2 .8
Oracle Oracle9i Personal Edition 9.2 .8DV
Oracle Oracle9i Personal Edition 9.2 .8
Oracle Oracle9i Enterprise Edition 9.2 .8DV
Oracle Oracle9i Enterprise Edition 9.2 .8
Oracle Oracle11g Standard Edition One 11.1 6
Oracle Oracle11g Standard Edition 11.1 6
Oracle Oracle11g Standard Edition 11.1 6
Oracle Oracle11g Enterprise Edition 11.1 6
Oracle Oracle10g Standard Edition 10.2 .3
Oracle Oracle10g Standard Edition 10.2 .2
Oracle Oracle10g Standard Edition 10.1 .5
Oracle Oracle10g Standard Edition 10.2.0.4
Oracle Oracle10g Personal Edition 10.2 .3
Oracle Oracle10g Personal Edition 10.2 .2
Oracle Oracle10g Personal Edition 10.1 .5
Oracle Oracle10g Personal Edition 10.2.0.4
Oracle Oracle10g Enterprise Edition 10.2 .3
Oracle Oracle10g Enterprise Edition 10.2 .2
Oracle Oracle10g Enterprise Edition 10.1 .5
Oracle Oracle10g Enterprise Edition 10.2.0.4
Oracle Oracle10g Enterprise Edition 10.2.0.2 64 bit
Oracle Oracle10g Application Server 10.1.3 .3.0
Oracle Oracle10g Application Server 10.1.2 .2.0
Oracle Oracle10g Application Server 10.1.2.3.0
Oracle Enterprise Manager Grid Control 10g 10.2.0.4
Oracle E-Business Suite 12 12.0.6
Oracle E-Business Suite 11i 11.5.10.2
Oracle Collaboration Suite Release 1 10.1.2
BEA Systems Weblogic Server 8.1 SP 6
BEA Systems Weblogic Server 8.1 SP 5
BEA Systems Weblogic Server 8.1 SP 4
BEA Systems Weblogic Server 8.1 SP 3
BEA Systems Weblogic Server 8.1 SP 2
BEA Systems Weblogic Server 8.1 SP 1
BEA Systems Weblogic Server 8.1
BEA Systems Weblogic Server 7.0 .0.1 SP 4
BEA Systems Weblogic Server 7.0 .0.1 SP 3
BEA Systems Weblogic Server 7.0 .0.1 SP 2
BEA Systems Weblogic Server 7.0 .0.1 SP 1
BEA Systems Weblogic Server 7.0 .0.1
BEA Systems Weblogic Server 7.0 SP 7
BEA Systems Weblogic Server 7.0 SP 6
BEA Systems Weblogic Server 7.0 SP 5
BEA Systems Weblogic Server 7.0 SP 4
BEA Systems Weblogic Server 7.0 SP 3
BEA Systems Weblogic Server 7.0 SP 2
BEA Systems Weblogic Server 7.0 SP 1
BEA Systems Weblogic Server 7.0
- HP HP-UX 11.0
- HP HP-UX 11i v1
- IBM AIX 4.3.3
- Microsoft Windows 2000 Advanced Server SP2
- Microsoft Windows 2000 Advanced Server SP1
- Microsoft Windows 2000 Advanced Server
- Microsoft Windows 2000 Datacenter Server SP2
- Microsoft Windows 2000 Datacenter Server SP1
- Microsoft Windows 2000 Datacenter Server
- Microsoft Windows 2000 Professional SP2
- Microsoft Windows 2000 Professional SP1
- Microsoft Windows 2000 Professional
- Microsoft Windows 2000 Server SP2
- Microsoft Windows 2000 Server SP1
- Microsoft Windows 2000 Server
- Microsoft Windows NT Enterprise Server 4.0 SP6a
- Microsoft Windows NT Enterprise Server 4.0 SP6
- Microsoft Windows NT Enterprise Server 4.0 SP5
- Microsoft Windows NT Enterprise Server 4.0 SP4
- Microsoft Windows NT Server 4.0 SP6a
- Microsoft Windows NT Server 4.0 SP6
- Microsoft Windows NT Server 4.0 SP5
- Microsoft Windows NT Server 4.0 SP4
- Microsoft Windows NT Workstation 4.0 SP6a
- Microsoft Windows NT Workstation 4.0 SP6
- Microsoft Windows NT Workstation 4.0 SP5
- Microsoft Windows NT Workstation 4.0 SP4
- RedHat Linux 7.1 i386
- RedHat Linux 6.2 i386
- Sun Solaris 8
- Sun Solaris 2.7_sparc
- Sun Solaris 2.6_sparc
BEA Systems Weblogic Server 9.2 Maintenance Pack
BEA Systems Weblogic Server 9.2
BEA Systems Weblogic Server 9.1
BEA Systems Weblogic Server 9.1
BEA Systems Weblogic Server 9.0
BEA Systems Weblogic Server 8.1
BEA Systems Weblogic Server 7.0 SP7
BEA Systems Weblogic Server 10.3
BEA Systems Weblogic Server 10.3
BEA Systems Weblogic Server 10.0 MP1
BEA Systems Weblogic Server 10.0
BEA Systems Weblogic Server 10.0
BEA Systems WebLogic Portal 8.1 SP6
BEA Systems WebLogic Portal 8.1 SP5
BEA Systems WebLogic Portal 8.1 SP4
BEA Systems WebLogic Portal 8.1 SP3
BEA Systems WebLogic Portal 8.1 SP2
BEA Systems WebLogic Portal 8.1 SP1
BEA Systems WebLogic Portal 8.1
BEA Systems WebLogic Portal 9.2 MP3
BEA Systems WebLogic Portal 9.2
BEA Systems WebLogic Portal 10.3
BEA Systems WebLogic Portal 10.2
BEA Systems WebLogic Portal 10.0 MP1
BEA Systems WebLogic Portal 10.0
Deniz Cevik of Intellect; Andy Davis of Information Risk Management Plc (IRM Plc); Esteban Martinez Fayo of Application Security, Inc.; Franz Huell of Red Database Security; Wasim Iqbal; Joxean Koret; Joxean Koret of TippingPoint (3com); Alexander Kornbrus
Açıklama:
Oracle Ocak 2009 itibariyle Kritik Yama Güncellemesi'ni (CPU) yayınladı. Birçok ürününde uzaktan yetkisiz kod ya da komut koşturma açıklıkları görülmektedir. Açıklıkların örnek gösterimleri Oracle TimesTen ve Oracle Secure Backup'ta yayınlanmıştır. Diğer açıklıklara da web üzerinden erişilebilir.
Etki:
Uzaktan komut ve kod koşturmayı da aralarında bulunduran birçok açıklık mevcuttur.