QID 20254

Date Published: 2022-04-20

QID 20254: Oracle Database 12.1.0.2 Critical Patch Update - April 2022 (Unauthenticated)

Oracle Database quarterly patches are proactive cumulative patches containing recommended bug fixes that are released on a regular schedule.

Affected Software:
Oracle Database 12.1.0.2

QID Detection Logic (Unauthenticated):
This QID connects the remote server's Oracle listener and reviews the Oracle banner version.

Successful exploitation could allow an attacker to compromise the database.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are requested to refer to CPUAPR2022 to obtain details about how to deploy the update.

    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    CPUAPR2022 URL Logo support.oracle.com/rs?type=doc&id=2844795.1