Sun Microsystems, Inc.  Oracle System Handbook - ISO 7.0 May 2018 Internal/Partner Edition
   Home | Current Systems | Former STK Products | EOL Systems | Components | General Info | Search | Feedback

Asset ID: 1-79-2251718.1
Update Date:2017-04-18
Keywords:

Solution Type  Predictive Self-Healing Sure

Solution  2251718.1 :   Oracle April 2017 Critical Patch Update for Oracle Communications Policy Management  


Related Items
  • Oracle Communications Policy Management
  •  
Related Categories
  • PLA-Other>Development>MOS Prod Dev Family>MOS Prod Dev Area>MOS: Critical Patch Updates
  •  




In this Document
Purpose
Scope
Details


Applies to:

Oracle Communications Policy Management - Version POLICY 12.2.0 and later
Information in this document applies to any platform.

Purpose

Oracle provides Critical Patch Updates to its customers to fix security vulnerabilities. This document will provide the details of any security vulnerabilities and their fixes.

This document provides the minimum versions of Oracle Communications Policy Management required to resolve the security vulnerability referenced by CVE-2017-5638.

Scope

 This document applies to Oracle Communications Policy Management  12.2 

Details

The following table lists the minimum version of Oracle Communications Policy Management patches required that resolves the vulnerability described in CVE-2017-5638.

 

Security Patches Available for Oracle Communications Policy Management:

 

CVE                       Product                    

CVE-2017-5638       Oracle Communications Policy Management 12.2.1.0.1             

                                           

 

Notes:

Note 1:For previous releases (10.x, 11.5.x, 12.1.x), we’ll request customer to upgrade to 12.2.1.1 version once there is a security concern raised.
Note 2: Policy product uses very limited Struts 2 feature, this CVE does not have  actual impact the product itself.

 


Attachments
This solution has no attachment
  Copyright © 2018 Oracle, Inc.  All rights reserved.
 Feedback