New Oracle Security
Alerts Page
Following on from three new
security advisories sent out
by Oracle,
Pete Finnigan has now
put together an Oracle
Security Alerts page which
you can access at
http://www.petefinnigan.com/alerts.htm
According to
Pete's posting on
comp.databases.oracle.server:
"Hi everyone,
I just noticed that Oracle
have released three new
security advisories covering
the database server 9iR1 and
9iR2 and also the
application server 9iR1,
9iR2 and earlier.
Interestingly in alert #63
Alex Kornbrust has found 11
bugs in 9i lite 5. I have
added an alerts page to my
site and linked to Oracles
advisories and also the
discoverers advisories - for
anyone who is interested the
links can be found at
http://www.petefinnigan.com/alerts.htm
Interestingly Oracles alerts
page includes a note in red
saying that the email
subscription service is
suspended and directs people
to metalink instead.
hope people find this
useful."
Pete also put together a
couple of useful Oracle
security papers that you
might want to look at, on
Row-Level Security and
dealing with SQL Injections.