Vulnerability assessment missing patches (CPU vs PSU)
Hi all,
We performed a vulnerability assessment of a database and it retuned that the following patches were missing:
Database Patch Set Update (PSU) Database Security Patch Set Update (SPU)
14390396 14275629
14841459 14727319
16270946 16056270
13632738 13632743
16742123 16619894
The DBA said that, since we are using CPUs to maintain the database up to date, the missing patches are not really an issue. From the literature we read it looks like using CPUs vs PSUs is more of a "philosophical" approach and that there is no absolute right or wrong. However, we would like to understand whether this database is actually vulnerable and whether the DBA needs to install (at least) the SPUs. Could you please help us? (please find below the OPatch inventory)?