A critical security patch is available from Oracle for the Oracle database 10g, application server and e-business suite. More information and downloads from Oracle.com:
http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2007.html
Patch MS07-039 [http://www.microsoft.com/technet/security/Bulletin/ms07-039.mspx] fixed a vulnerability in implementations of Active Directory on Windows 2000 Server and Windows Server 2003 that could allow remote code execution or a denial of service condition.
Patch MS07-040 [http://www.microsoft.com/technet/security/bulletin/ms07-040.mspx] fixed vulnerabilities that could allow remote code execution on client systems with .NET Framework installed which could allow information disclosure on Web servers running ASP.NET.
From US CERT:
“US-CERT is aware of vulnerabilities that exist in the SAP Message and DB Web Servers. These vulnerabilities may allow an unauthenticated attacker to execute arbitrary code or cause a denial-of-service condition.
More information regarding this vulnerability can be found in Vulnerability Note VU#305657 and VU#679041.
To help mitigate the security risk, US-CERT recommends users upgrade their SAP server to the latest version as soon as possible.”
The long awaited, overhauled, improved, and redesigned flagship product from Oracle has released today. Oracle 11g boast a long list of over 500 new features including self-tuning capabilities, automated storage and memory management and intelligent tuning advisors. Additional features like Database and SQL Replay capabilities will make troubleshooting a lot easier with this release.
Microsoft has stated it will not ship Windows Server 2008 until February. This is a delay from the previous scheduled release of late 2007.
22 queries. 0.316 seconds