Oracle has announced the release of the first critical update in 2023, which includes 327 new security fixes.
At the same time, more than 70 fixes eliminate critical vulnerabilities, and almost 200 fixes eliminate errors that can be used remotely without authentication. Some of the corrected shortcomings affect more than one product of the company.
The largest number of new fixes was released for Oracle Communications — 79. Of these, 63 vulnerabilities can be used remotely without authentication, and 19 have a critical severity rating.
The patch includes 50 security fixes that eliminate flaws in the Fusion software. 39 errors can be exploited by a remote attacker who has not passed authentication, and 14 of them are assessed as critical.
Many fixes have also been released for communication applications (39 fixes, 31 for remote use without authentication) and for MySQL (37 fixes, 8 for unidentified, remotely exploited flaws).
Among other patched software: applications for financial services (16 fixes — 12 remotely operated problems without authentication), E-Business Suite (12-10), PeopleSoft (12-10), Database Server (9-1), applications for utilities (7-7), construction and design (7-4), food production and drinks (7-2), as well as support tools (6-6) and virtualization (6-1).
Updates also include fixes for Essbase, GoldenGate, TimesTen In-Memory, Commerce, Enterprise Manager, Hyperion, Java SE, JD Edwards, Siebel CRM, applications for Medicine and healthcare, Hotel and insurance business, Retail.
The tech giant also announced that while no new fixes have been released for applications such as Big Data Graph, Global Lifecycle Management, Graph Server and Client, and Spatial Studio, updates have been made available for them to address third-party issues. Oracle has released third-party fixes for other products as well.
Oracle recommends that customers install the available fixes as soon as possible, emphasizing that it has information about malicious attempts to exploit uncorrected problems for which fixes are available.