Sign Here Please

For those of you who manage a process which requires you to capture electronic signatures on the documents that are part of that process, this blog post is a must read for you.  

With the 11.1.1.1.6  (PS/5) release of WebCenter Content 11g a new, and (more...)

June 13 Webcast – Siebel: Solving the Next Generation of Business Challenges

Today’s customers are social, mobile, and more demanding than ever before. That’s why Oracle continues to add new capabilities to Siebel CRM – helping you keep pace with rapid technological change and growing customer expectations.

Register now for our live Webcast on Thursday, June 13 to discover how the latest (more...)

CVE-2012-0814 Credentials Management vulnerability in SSH

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-0814 Credentials Management vulnerability 3.5 SSH
Solaris 10 Contact Support
Solaris 11.1 11.1.7.5.0
Solaris 9 Contact Support

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities (more...)

Lucky Thirteen vulnerability in Solaris OpenSSL

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2013-0166 Cryptographic Issues vulnerability 5.0 OpenSSL
Solaris 10 Contact Support
Solaris 11 11.1.7.5.0
Solaris 9 Contact Support
CVE-2013-0169 Cryptographic Issues vulnerability 5.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's (more...)

Multiple Permissions, Privileges, and Access Control vulnerabilities in Sudo

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2013-1775 Permissions, Privileges, and Access Control vulnerability 6.9 Sudo
Solaris 11.1 11.1.7.5.0
CVE-2013-1776 Permissions, Privileges, and Access Control vulnerability 4.4

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product (more...)

CVE-2012-5134 Buffer Overflow vulnerability in libxml2

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-5134 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability 6.8 libxml2
Solaris 10 Contact Support
Solaris 11.1 11.1.7.5.0
Solaris 9 Contact Support

This notification describes vulnerabilities fixed in third-party components that (more...)

CVE-2013-0338 Denial of Service (DoS) vulnerability in libxml2

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2013-0338 Denial of Service (DoS) vulnerability 4.3 libxml2
Solaris 10 Contact Support
Solaris 11.1 11.1.7.5.0
Solaris 9 Contact Support

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information (more...)

CVE-2012-5526 Configuration vulnerability in Perl

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-5526 Configuration vulnerability 5.0 Perl
Solaris 11.1 11.1.7.5.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

CVE-2010-5107 Denial of Service vulnerability in ssh

| May 21, 2013
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2010-5107 Denial of Service vulnerability 5.0 ssh
Solaris 11.1 11.1.7.5.0
Solaris 10 Contact Support
Solaris 9 Contanct Support

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about (more...)

Multiple Cross Site Scripting vulnerabilities in Apache HTTP server

| May 21, 2013
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-3499 Cross-Site Scripting vulnerability 4.3 Apache HTTP server
Solaris 10 contact support
Solaris 11.1 11.1.7.5.0
CVE-2012-4558 Cross-Site Scripting vulnerability 4.3

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product (more...)

CVE-2012-4429 Information Leak / Disclosure in vino

| May 21, 2013
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-4429 Information Exposure vulnerability 5.0 vino
Solaris 11.1 11.1.7.5.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

CVE-2012-4564 Design Error vulnerability in GIMP

| May 21, 2013
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-4564 Design Error vulnerability 6.8 GIMP
Solaris 11.1 11.1.7.5.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

non-interactive zone configuration

When creating new Solaris zones, at initial boot up, the system administrator is prompted for the new hostname, network settings, etc of the new zone. I get tired of the brittle process of manually entering the initial settings and I prefer to be able to automate the process. I had (more...)

CVE-2012-5195 Heap Buffer Overrun vulnerability in Perl

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-5195 Heap Buffer Overrun vulnerability 5.1 Perl
Solaris 11.1 11.1.7.5.0

Oracle acknowledges with thanks, Ricardo Signes from cpan.org for bringing this issue to our attention.

This notification describes vulnerabilities fixed in third-party components that (more...)

CVE-2012-5667 Heap Buffer Overflow vulnerability in GNU Grep

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-5667 Heap Buffer Overflow vulnerability 4.4 GNU Grep
Solaris 10 Contact Support
Solaris 11.1 11.1.7.5.0
Solaris 9 Contact Support

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information (more...)

Target Verification

Verifying the Target

I just built a combined OSB, SOA/BPM, BAM clustered domain.  The biggest hassle is validating that the resource targeting is correct.  There is a great appendix in the documentation that lists all the modules and resources with their associated targets.  The only problem is (more...)

P2V: A Detailed Procedure

| May 21, 2013

We had a post not too long ago about physical to virtual migration in Ops Center. It outlined the broad steps involved in performing P2V by taking a flash archive of a physical system and then provisioning a virtual system using that FLAR.

Well, over on to the Enterprise Manager (more...)

CVE-2012-6329 Code Injection vulnerability in Perl 5.8

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-6329 Code Injection vulnerability 7.5 Perl 5.8
Solaris 11.1 11.1.7.5.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

CVE-2012-6329 Code Injection vulnerability in Perl

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-6329 Code Injection vulnerability 7.5 Perl
Solaris 11.1 11.1.7.5.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

JavaOne Shanghai Early Bird Ends May 31

Register Now and Save US$160 Off the Onsite Price

JavaOne Shanghai
July 22-25, 2013

You know that change is constant and that Java is a remarkably dynamic platform. This comes through clearly in the JavaOne Shanghai sessions, which offer practical advice you can use now and information to leverage in (more...)