Multiples vulnérabilités dans Oracle Database Server (23 juillet 2026)
Multiple vulnerabilities have been discovered in Oracle Database Server, potentially leading to data integrity compromise, data confidentiality breaches, and remote denial-of-service attacks. These vulnerabilities affect various versions of the database server and related services. Affected versions include 19.3 through 23.26.2, and Net Services versions 19.3 through 23.26.2. Users should immediately apply the provided patches to mitigate these risks.
Oracle has announced multiple vulnerabilities within its Database Server software. These vulnerabilities could allow an attacker to compromise data integrity, steal sensitive data, or cause a denial-of-service attack. The affected products include Oracle Database Server and Oracle Net Services. Specifically, versions 19.3 through 23.26.2 are vulnerable. The vulnerabilities are categorized as impacting data integrity, data confidentiality, and remote denial-of-service capabilities. The CERT-FR bulletin provides a comprehensive list of CVE identifiers associated with these issues. Users are strongly advised to consult the provided Oracle security bulletin (https://www.oracle.com/security-alerts/cpujul2026.html) for detailed information and to apply the necessary patches as soon as possible. The bulletin details the specific CVE IDs and recommended remediation steps.