Skip to Main Content

Enterprise Manager

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

What version of OEM is no longer subject to the WLS 12.1.0.3 vulnerability?

KarenM54Jun 5 2019

We are currently on OEM 13.2. Recently, all of our OEM servers had to be patched because of a vulnerability with WLS 12.1.0.3, even though it's embedded. I would like to know what version of OEM we should upgrade to to eliminate this vulnerability.

Comments

BPeaslandDBA

Which network? For RAC, there are two networks, the public network (which your apps use to connect to the database) and the private network (used for node-to-node cluster communications). If you disable the public network, Oracle will work just fine and you don't need to do anything. If you disable the private network, nodes will get evicted from the cluster. It would be better to stop clusterware on all nodes in this case.

Cheers,
Brian

1 - 1

Post Details

Added on Jun 5 2019
0 comments
96 views