Oracle releases 318 security updates in January

B2B Cyber ​​Security ShortNews
Advertising

Share post

Although the list of 318 security updates does not immediately show the risk ratings with CVSS values, a look at the descriptions quickly shows that the package contains a lot of critical updates with ratings between 9.0 and 10, as well as many highly dangerous vulnerabilities.  

The January 2025 Oracle Critical Patch Update contains 318 security updates for numerous products. A risk matrix shows the affected components and CVSS scores for risk assessment. Workarounds provide temporary protection measures if direct patching is not possible. Oracle emphasizes the importance of timely updates as attacks on known vulnerabilities continue to be monitored.

Advertising

Many critical vulnerabilities

The list of critical vulnerabilities with CVSS scores 9.0 to 10 is almost overwhelming. Administrators should take the warnings seriously and implement the updates immediately. Oracle has already warned that active attacks on the vulnerabilities were probably observed beforehand. Oracle is also focusing on an existing patch: This security warning fixes the CVE-2024-21287 vulnerability in Oracle Agile Product Lifecycle Management (PLM). This vulnerability can be exploited remotely without authentication, i.e. it can be exploited over a network without requiring a user name and password. If successfully exploited, this vulnerability can lead to file disclosure.

More at Oracle.com

 

Matching articles on the topic

Hacker encrypts 12.000 patient records

Many weeks ago, there was a hacker attack on the MVZ Herz-Lungen-Praxis Hamburg-Bergedorf, a subsidiary that controls the practice information system of the LungenClinic Grosshansdorf ➡ Read more

Programmer cracks Akira ransomware!

The Akira ransomware has attacked numerous companies worldwide, encrypting their data and extorting large amounts of ransom. Now an Indonesian programmer has ➡ Read more

60 pension funds affected by hack

A technical partner of Swiss Life recently suffered a hacker attack. According to Watson.ch, this resulted in another 60 Swiss pension funds ➡ Read more

Malware-as-a-Service: Responsible for most attacks

More than half of all cyberattacks in 2024 were caused by Malware-as-a-Service (MaaS), according to the results of a recent threat report. ➡ Read more

DeceptiveDevelopment: Attack on software developers

With the "DeceptiveDevelopment" campaign, cybercriminals are targeting software developers looking for jobs. Together with a test to prove their ➡ Read more

Cyber ​​threats are becoming faster and more devastating

In 2024, cyber threats have not only increased, they have also become more complex and their impact significantly worse, according to recent report findings. ➡ Read more

Email attacks have skyrocketed

Companies worldwide are facing increasingly dangerous cyber threats. Attacks have increased by 21 percent in the last year. ➡ Read more

Negative record: Ransomware peak in February

According to experts at Bitdefender Labs, February 2025 was a record-breaking month. Ransomware attacks increased by ➡ Read more