QID 20306

Date Published: 2023-04-04

QID 20306: Oracle Database 12.2.0.1 Critical OJVM Patch Update - October 2018

Oracle Database quarterly patches are proactive cumulative patches containing recommended bug fixes that are released on a regular schedule.

Affected Software:
Oracle Database 12.2.01

QID Detection Logic (Authenticated):
Authentication via Oracle Database:
This QID reviews the Oracle output from the table name DBA_REGISTRY_SQLPATCH for patch information.

Successful exploitation could allow an attacker to compromise the database.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are requested to refer to CPUOCT2018 to obtain details about how to deploy the update.

    Vendor References

    CVEs related to QID 20306

    Software Advisories
    Advisory ID Software Component Link
    CPUOCT2018 URL Logo www.oracle.com/security-alerts/cpuoct2018.html