QID 20368

Date Published: 2023-10-30

QID 20368: Oracle Database 19c Critical OJVM Patch Update - October 2023

Oracle Database quarterly patches are proactive cumulative patches containing recommended bug fixes that are released on a regular schedule.

Affected Software:
Oracle Database 19c

QID Detection Logic (Authenticated):
Authentication via Oracle Database:
This QID reviews the Oracle output from the table name DBA_REGISTRY_SQLPATCH for patch information.

Successful exploitation may be remotely exploitable without authentication, i.e., may be exploited over a network without requiring user credentials.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are requested to refer to CPUOCT2023 to obtain details about how to deploy the update.

    Software Advisories
    Advisory ID Software Component Link
    CPUOCT2023 URL Logo support.oracle.com/epmos/faces/DocumentDisplay?_afrLoop=244116964534891&id=2966413.1&_afrWindowMode=0&_adf.ctrl-state=1cvej6kti4_151