Database Security Products (MOSC)

MOSC Banner

heartbleed patch for oracle RDBMS

edited May 1, 2014 12:00PM in Database Security Products (MOSC) 1 commentAnswered

I went thru the document provided it says that the Oracle Database [Product ID 5] does not include OpenSSL in their initial distribution (i.e., “out of the box”) and should therefore not be affected by the recent disclosure of CVE-2014-0160.


For OEM, here is the note from the document

Global Product Security has determined that the following products are using OpenSSL cryptographic libraries whose versions have been externally reported as not vulnerable to CVE-2014-0160 or did not use OpenSSL libraries to implement the vulnerable TLS protocol. No further action is therefore expected for these products:

  • Enterprise manager grid control

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center