QID 20325

Date Published: 2023-04-03

QID 20325: Oracle Database 12.2.0.1 Critical OJVM Patch Update - April 2020

Oracle Database Patch Set Updates are proactive cumulative patches containing recommended bug fixes that are released on a regular schedule.

Affected Software:
Oracle Database 12.2.0.1

QID Detection Logic (Authenticated):
Authentication via Oracle Database:
This QID reviews the Oracle output from the table name DBA_REGISTRY_SQLPATCH for patch information.

Successful exploitation could allow an attacker to cause a denial of service (DoS) condition on the target.

  • CVSS V3 rated as High - 8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are requested to refer to CPUAPR2020 to obtain details about how to deploy the update.
    Software Advisories
    Advisory ID Software Component Link
    CPUAPR2020 URL Logo www.oracle.com/security-alerts/cpuapr2020.html#AppendixDB