Oracle to patch 79 DB server vulnerabilities
Oracle’s first batch of critical patch updates for 2012 will be super-sized: 79 new security vulnerability fixes across hundreds of Oracle products.
The security fixes, scheduled for next Tuesday (January 17, 2012), will cover holes in the flagship Oracle Database 11g, Oracle Fusion Middleware 11g, Oracle Application Server 10g and numerous additional products and components.
The most serious of these vulnerabilities may be remotely exploitable without authentication, i.e., may be exploited over a network without the need for a username and password.