Login  Register

Re: How To Address Security Scan Findings on ODA X8

Posted by abdessamad321 on Sep 16, 2022; 12:44am
URL: http://erman-arslan-s-oracle-forum.124.s1.nabble.com/How-To-Address-Security-Scan-Findings-on-ODA-X8-tp11023p11071.html

Hi Erman sir,

Thanks for the update, it becomes very complicated if we want to patch ODA to a new version because it is indicated in the release note that we have to roll back all the os patches or any rpm installed manually to guarantee the success of the application of the quarterly released patch.

So I don't know if we can accept  to only apply patch from oda bundle released by oracle (in this case zero day vulnerability is not covered, nor those appeared after the release of patch which is published quarterly), or we have to apply patches for security finding as described in the note you have shared and write them down somewhere to undo them before patching  ODA?

Thank you,