Oracle CPU January 2020 - Java (WAF and Login/IAM) | Techzone
Summary
CVE-2019-16168, CVE-2019-13117, CVE-2019-13118 Do not affect Java deployments, typically in servers, that load and run only trusted code. CVE-2020-2604, CVE-2020-2583 These Java serializiation vulnerabilities do not affect the Airlock Secure Access Hub, since no untrusted data is deserialized. Airlock WAF only parses certificates using Java in the configuration center on trusted input. CVE-2020-2590 This vulnerability may affect the integrity of SASL messages included in Kerberos GSSAPI. CVE-2020-2659 This sandbox restriction escape does not affect the Airlock Secure Access Hub, since no untrusted code is executed.
Classifications
industries
No industries detected
applications
Business Intelligence
AskAI Classifications
Labels
Software Development
SaaS
Standard Software
Linked Companies
Ergon Informatik AG
$10M to $25M
Oracle
$1B+