673 vulnerabilities in Oracle products

Oracle has released a scheduled update for its products (Critical Patch Update), aimed at addressing critical issues and vulnerabilities. The September update resolves 673 vulnerabilities.

Some issues:

  • 19 vulnerabilities in VirtualBox. The most serious issue (CVE-2026-87273) has been assigned a severity level of 8.6 out of 10, and 5 other issues, of which 4 are specific to Windows, have been assigned a level of 7.8 out of 10. According to the severity levels, the indicated vulnerabilities allow access to the host environment from the guest system. The issues have been fixed in VirtualBox 7.2.18.
  • Among Oracle Communications products, one locally exploitable vulnerability is noted in server MySQL, which has a severity level of 6.5 out of 10.
  • Among the issues related to Java SE, three vulnerabilities in virtual machine GraalVM are noted, which can be exploited remotely via HTTP (severity level 8.1 out of 10).
  • No issues have been reported in Solaris, and no corrective releases have been formed.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster