SANS Internet Storm Center; Cooperative Network Security Community - Internet Security - isc(情報元のブックマーク数)

Oracleがセキュリティパッチをリリースしています。またもや色々すぎる脆弱性に対応と。。。。。一般的なDBAな人ってどこまで対応してるんだろ。

Oracle released it's quarterly accumulated patches today.

For those that do patch their databases, I'd suggest you round up your DBAs and run over these with them as well as your server administrators who'll get potentially a lot more work as well on "reboot wednesday".

InfoSec Handlers Diary Blog - Oracle quarterly patches on black tuesday

A Critical Patch Update is a collection of patches for multiple security vulnerabilities. It also includes non-security fixes that are required (because of interdependencies) by those security patches. Critical Patch Updates are cumulative, except as noted below, but each advisory describes only the security fixes added since the previous Critical Patch Update. Thus, prior Critical Patch Update Advisories should be reviewed for information regarding earlier accumulated security fixes. Please refer to

http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2008.html

こうみると、Oralceの買収劇がよくわかる・・・w

Oracle released fixes for:

InfoSec Handlers Diary Blog - Oracle quarterly patches on black tuesday

screenshot