Pertaining to Oracle Security Alert CVE-2012-1675
Recently our company opened more scanners for vulnerability in wider area, such as Oracle Listener. One issue reported is for CVE-2012-1675, which related to many Oracle servers including RAC clusters.
I followed the instruction in the Oracle document (My Oracle Support Note 1340831.1 ) strictly and have the following questions:
1. Step 1.3, must I change the listening port from 1521 or 1522 to something else such as 1523? Can I stick to the original?
2. If I restart the listener here, will clients be impacted if the port and the protocol changed (from TCP to TCPS)? Any change or setting must be done from the client side? If so, what to be changed or set and how?