April CPU 2014
From: <oracle_at_ukcert.org.uk>
Date: Wed, 30 Apr 2014 12:47:45 +0100
Message-ID: <027c01cf646a$00a8fee0$01fafca0$_at_ukcert.org.uk>
Hello List,
Date: Wed, 30 Apr 2014 12:47:45 +0100
Message-ID: <027c01cf646a$00a8fee0$01fafca0$_at_ukcert.org.uk>
Hello List,
April CPU 2014 for DB will be of interest for high security environments
i.e. two privilege escalations I found have kindly been fixed by Oracle.
http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html#Ap
pendixDB
There are details about the fixed issues in the book just released
http://www.apress.com/9781430262114 - though it is mainly about defence
both in terms of using CC to reduce risk on large estates, and also how to
make privileged access controls like breakglass more effective, which again
will be of interest for the sec minded folks wanting to make their DB
environments safer.
Cheers,
Paul
www.oraclesecurity.com
-- http://www.freelists.org/webpage/oracle-lReceived on Wed Apr 30 2014 - 13:47:45 CEST