Description

A Critical Patch Update is a collection of patches for multiple security vulnerabilities. It also includes non-security fixes that are required (because of interdependencies) by those security patches. Due to the threat posed by a successful attack, Oracle strongly recommends that fixes are applied as soon as possible. This Critical Patch Update contains 36 new security fixes across all products.

Supported Products and Components Affected

Security vulnerabilities addressed by this Critical Patch Update affect the products listed in the categories below. The product area of the patches for the listed versions is shown in [square brackets] following the product versions. Please click on the link in [square brackets] or in the Patch Availability Table to access the documentation for those patches.

Category I

Product releases and versions that are in Premier Support or Extended Support, under the Oracle Lifetime Support policy; or Error Correction Support (ECS) or Extended Maintenance Support (EMS), under the previous support policy:

• Oracle Database 10g Release 2, versions 10.2.0.2, 10.2.0.3     [ Database ]
• Oracle Database 10g Release 1, versions 10.1.0.4, 10.1.0.5     [ Database ]
• Oracle9i Database Release 2, versions 9.2.0.7, 9.2.0.8     [ Database ]
• Oracle Secure Enterprise Search 10g Release 1, version 10.1.6     [ Secure Enterprise Search (OTN) ]
• Oracle Application Server 10g Release 3 (10.1.3), versions 10.1.3.0.0, 10.1.3.1.0, 10.1.3.2.0     [ Application Server ]
• Oracle Application Server 10g Release 2 (10.1.2), versions 10.1.2.0.1 – 10.1.2.0.2, 10.1.2.1.0, 10.1.2.2.0     [ Application Server ]
• Oracle Application Server 10g (9.0.4), version 9.0.4.3     [ Application Server ]
• Oracle10g Collaboration Suite Release 1, version 10.1.2     [ Collaboration Suite ]
• Oracle E-Business Suite Release 11i, versions 11.5.7 – 11.5.10 CU2     [ E-Business Suite ]
• Oracle E-Business Suite Release 12, version 12.0.0     [ E-Business Suite ]
• Oracle Enterprise Manager 9i Release 2, versions 9.2.0.7, 9.2.0.8     [ Enterprise Manager ]
• Oracle Enterprise Manager 9i, version 9.0.1.5     [ Enterprise Manager ]
• Oracle PeopleSoft Enterprise PeopleTools versions 8.22, 8.47, 8.48     [ PeopleSoft/JDE ]
• Oracle PeopleSoft Enterprise Human Capital Management version 8.9     [ PeopleSoft/JDE ]
• JD Edwards EnterpriseOne Tools version 8.96     [ PeopleSoft/JDE ]
• JD Edwards OneWorld Tools SP23     [ PeopleSoft/JDE ]

Category II

Products and components that are bundled with the products listed in Category I.
No products in this category are affected by the fixes included in this Critical Patch Update.

Category III

Products that are de-supported as a standalone installation but are supported when installed with the products listed in Category I:

• Oracle9i Database Release 1, versions 9.0.1.5, 9.0.1.5 FIPS     [ Application Server ]

Patches for Category III products are only available when these products are installed as part of Category I products, and are tested solely on supported configurations and environments. Please refer to the documentation for each product for specific details concerning the support and availability of patches.

Category IV

Products that are supported only on selected platforms. Please consult the additional documentation for details.

• Oracle9i Database Release 2, versions 9.2.0.5     [ Database ]
• Oracle Database 10g Release 2, version 10.2.0.1     [ Database ]

Advisory Link

[tags]Oracle Security, Oracle April Patch, Critical Oracle Patches[/tags]

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.