Security update for oracle-update

SUSE Security Update: Security update for oracle-update
Announcement ID: SUSE-SU-2014:0130-1
Rating: important
References: #859033
Affected Products:
  • SUSE Manager 1.7 for SLE 11 SP2

  • An update that fixes 5 vulnerabilities is now available.

    Description:


    This oracle-server update fixes the issues from the January
    2014 Oracle Critical Patch Update: CVE-2013-5858,
    CVE-2013-5853, CVE-2014-0377, CVE-2013-5764 and
    CVE-2014-0378.

    Security Issue references:

    * CVE-2013-5858
    >
    * CVE-2013-5853
    >
    * CVE-2014-0377
    >
    * CVE-2013-5764
    >
    * CVE-2014-0378
    >

    Indications:

    Everybody should update.

    Patch Instructions:

    To install this SUSE Security Update use YaST online_update.
    Alternatively you can run the command listed for your product:

    • SUSE Manager 1.7 for SLE 11 SP2:
      zypper in -t patch sleman17sp2-oracle-update-8816

    To bring your system up-to-date, use "zypper patch".

    Package List:

    • SUSE Manager 1.7 for SLE 11 SP2 (x86_64):
    • oracle-update-1.7-0.23.1

    References:

    • http://support.novell.com/security/cve/CVE-2013-5764.html
    • http://support.novell.com/security/cve/CVE-2013-5853.html
    • http://support.novell.com/security/cve/CVE-2013-5858.html
    • http://support.novell.com/security/cve/CVE-2014-0377.html
    • http://support.novell.com/security/cve/CVE-2014-0378.html
    • https://bugzilla.novell.com/859033
    • http://download.novell.com/patch/finder/?keywords=b29bf6be21e017ded3464349daae8ab9