Oracle Kills 402 Bugs in Massive October Patch Update

Over half of Oracle’s flaws in its quarterly patch update can be remotely exploitable without authentication; 65 are critical, and two have CVSS scores of 10 out of 10. Continue reading Oracle Kills 402 Bugs in Massive October Patch Update

Oracle Patches 270 Vulnerabilities in Year’s First Critical Patch Update

Oracle patched 270 vulnerabilities, many remotely exploitable, across 45 different products as part of its quarterly Critical Patch Update (CPU) on Tuesday. Continue reading Oracle Patches 270 Vulnerabilities in Year’s First Critical Patch Update

Oracle Patches Record 276 Vulnerabilities with July Critical Patch Update

Oracle fixed a record 276 vulnerabilities – more than half of which are remotely exploitable – as part of its July Critical Patch Update on Tuesday afternoon. Continue reading Oracle Patches Record 276 Vulnerabilities with July Critical Patch Update

Broken 2013 Java Patch Leads to Sandbox Bypass

A patch for a critical 2013 Java vulnerability is incomplete, and exposes Java servers and clients to a sandbox bypass, researchers at Security Explorations of Poland said. Continue reading Broken 2013 Java Patch Leads to Sandbox Bypass