{"id":27020,"date":"2019-07-01T17:52:13","date_gmt":"2019-07-01T15:52:13","guid":{"rendered":"https:\/\/pitss.org\/de\/?p=27020"},"modified":"2019-08-12T17:54:04","modified_gmt":"2019-08-12T15:54:04","slug":"oracle-critical-patch-weblogic-server","status":"publish","type":"post","link":"https:\/\/pitss.org\/de\/oracle-critical-patch-weblogic-server\/","title":{"rendered":"Kritische Sicherheitsl\u00fccke im WebLogic Server"},"content":{"rendered":"<p>[et_pb_section bb_built=&#8220;1&#8243; fullwidth=&#8220;on&#8220; _builder_version=&#8220;3.0.74&#8243; background_image=&#8220;https:\/\/pitss.org\/de\/wp-content\/uploads\/sites\/9\/2017\/08\/blog-2-header-v3-min.jpg&#8220; next_background_color=&#8220;#ffffff&#8220; inner_width=&#8220;auto&#8220; inner_max_width=&#8220;none&#8220;][et_pb_fullwidth_header title=&#8220;PITSS Tech Blog&#8220; subhead=&#8220;News zu Java, PL\/SQL, Entwicklung &amp; Technologiewechsel&#8220; background_layout=&#8220;dark&#8220; text_orientation=&#8220;center&#8220; background_overlay_color=&#8220;rgba(0,0,0,0.53)&#8220; _builder_version=&#8220;3.0.74&#8243; header_fullscreen=&#8220;off&#8220; header_scroll_down=&#8220;off&#8220; image_orientation=&#8220;center&#8220; content_orientation=&#8220;center&#8220; custom_button_one=&#8220;off&#8220; button_one_letter_spacing=&#8220;0&#8243; button_one_icon_placement=&#8220;right&#8220; button_one_letter_spacing_hover=&#8220;0&#8243; custom_button_two=&#8220;off&#8220; button_two_letter_spacing=&#8220;0&#8243; button_two_icon_placement=&#8220;right&#8220; button_two_letter_spacing_hover=&#8220;0&#8243; title_font_size=&#8220;36px&#8220; subhead_font_size=&#8220;22px&#8220; max_width_tablet=&#8220;50px&#8220; background_color=&#8220;rgba(255, 255, 255, 0)&#8220; button_one_text_size__hover_enabled=&#8220;off&#8220; button_one_text_size__hover=&#8220;null&#8220; button_two_text_size__hover_enabled=&#8220;off&#8220; button_two_text_size__hover=&#8220;null&#8220; button_one_text_color__hover_enabled=&#8220;off&#8220; button_one_text_color__hover=&#8220;null&#8220; button_two_text_color__hover_enabled=&#8220;off&#8220; button_two_text_color__hover=&#8220;null&#8220; button_one_border_width__hover_enabled=&#8220;off&#8220; button_one_border_width__hover=&#8220;null&#8220; button_two_border_width__hover_enabled=&#8220;off&#8220; button_two_border_width__hover=&#8220;null&#8220; button_one_border_color__hover_enabled=&#8220;off&#8220; button_one_border_color__hover=&#8220;null&#8220; button_two_border_color__hover_enabled=&#8220;off&#8220; button_two_border_color__hover=&#8220;null&#8220; button_one_border_radius__hover_enabled=&#8220;off&#8220; button_one_border_radius__hover=&#8220;null&#8220; button_two_border_radius__hover_enabled=&#8220;off&#8220; button_two_border_radius__hover=&#8220;null&#8220; button_one_letter_spacing__hover_enabled=&#8220;on&#8220; button_one_letter_spacing__hover=&#8220;0&#8243; button_two_letter_spacing__hover_enabled=&#8220;on&#8220; button_two_letter_spacing__hover=&#8220;0&#8243; button_one_bg_color__hover_enabled=&#8220;off&#8220; button_one_bg_color__hover=&#8220;null&#8220; button_two_bg_color__hover_enabled=&#8220;off&#8220; button_two_bg_color__hover=&#8220;null&#8220; \/][\/et_pb_section][et_pb_section bb_built=&#8220;1&#8243; specialty=&#8220;on&#8220; _builder_version=&#8220;3.26.7&#8243; background_position_1=&#8220;top_left&#8220; background_repeat_1=&#8220;no-repeat&#8220; background_position_2=&#8220;top_left&#8220; background_repeat_2=&#8220;no-repeat&#8220; prev_background_color=&#8220;#000000&#8243; next_background_color=&#8220;#000000&#8243; box_shadow_horizontal_tablet=&#8220;0px&#8220; box_shadow_vertical_tablet=&#8220;0px&#8220; box_shadow_blur_tablet=&#8220;40px&#8220; box_shadow_spread_tablet=&#8220;0px&#8220; z_index_tablet=&#8220;500&#8243;][et_pb_column type=&#8220;3_4&#8243; specialty_columns=&#8220;3&#8243;][et_pb_row_inner admin_label=&#8220;Row&#8220; _builder_version=&#8220;3.0.69&#8243;][et_pb_column_inner type=&#8220;4_4&#8243; saved_specialty_column_type=&#8220;3_4&#8243; custom_padding__hover=&#8220;|||&#8220; custom_padding=&#8220;|||&#8220; saved_specialty_column_type=&#8220;3_4&#8243;][et_pb_text _builder_version=&#8220;3.24.1&#8243; module_alignment=&#8220;left&#8220; text_text_shadow_horizontal_length=&#8220;text_text_shadow_style,%91object Object%93&#8243; text_text_shadow_vertical_length=&#8220;text_text_shadow_style,%91object Object%93&#8243; text_text_shadow_blur_strength=&#8220;text_text_shadow_style,%91object Object%93&#8243; link_text_shadow_horizontal_length=&#8220;link_text_shadow_style,%91object Object%93&#8243; link_text_shadow_vertical_length=&#8220;link_text_shadow_style,%91object Object%93&#8243; link_text_shadow_blur_strength=&#8220;link_text_shadow_style,%91object Object%93&#8243; ul_text_shadow_horizontal_length=&#8220;ul_text_shadow_style,%91object Object%93&#8243; ul_text_shadow_vertical_length=&#8220;ul_text_shadow_style,%91object Object%93&#8243; ul_text_shadow_blur_strength=&#8220;ul_text_shadow_style,%91object Object%93&#8243; ol_text_shadow_horizontal_length=&#8220;ol_text_shadow_style,%91object Object%93&#8243; ol_text_shadow_vertical_length=&#8220;ol_text_shadow_style,%91object Object%93&#8243; ol_text_shadow_blur_strength=&#8220;ol_text_shadow_style,%91object Object%93&#8243; quote_text_shadow_horizontal_length=&#8220;quote_text_shadow_style,%91object Object%93&#8243; quote_text_shadow_vertical_length=&#8220;quote_text_shadow_style,%91object Object%93&#8243; quote_text_shadow_blur_strength=&#8220;quote_text_shadow_style,%91object Object%93&#8243; header_text_shadow_horizontal_length=&#8220;header_text_shadow_style,%91object Object%93&#8243; header_text_shadow_vertical_length=&#8220;header_text_shadow_style,%91object Object%93&#8243; header_text_shadow_blur_strength=&#8220;header_text_shadow_style,%91object Object%93&#8243; header_2_text_shadow_horizontal_length=&#8220;header_2_text_shadow_style,%91object Object%93&#8243; header_2_text_shadow_vertical_length=&#8220;header_2_text_shadow_style,%91object Object%93&#8243; header_2_text_shadow_blur_strength=&#8220;header_2_text_shadow_style,%91object Object%93&#8243; header_3_text_shadow_horizontal_length=&#8220;header_3_text_shadow_style,%91object Object%93&#8243; header_3_text_shadow_vertical_length=&#8220;header_3_text_shadow_style,%91object Object%93&#8243; header_3_text_shadow_blur_strength=&#8220;header_3_text_shadow_style,%91object Object%93&#8243; header_4_text_shadow_horizontal_length=&#8220;header_4_text_shadow_style,%91object Object%93&#8243; header_4_text_shadow_vertical_length=&#8220;header_4_text_shadow_style,%91object Object%93&#8243; header_4_text_shadow_blur_strength=&#8220;header_4_text_shadow_style,%91object Object%93&#8243; header_5_text_shadow_horizontal_length=&#8220;header_5_text_shadow_style,%91object Object%93&#8243; header_5_text_shadow_vertical_length=&#8220;header_5_text_shadow_style,%91object Object%93&#8243; header_5_text_shadow_blur_strength=&#8220;header_5_text_shadow_style,%91object Object%93&#8243; header_6_text_shadow_horizontal_length=&#8220;header_6_text_shadow_style,%91object Object%93&#8243; header_6_text_shadow_vertical_length=&#8220;header_6_text_shadow_style,%91object Object%93&#8243; header_6_text_shadow_blur_strength=&#8220;header_6_text_shadow_style,%91object Object%93&#8243; z_index_tablet=&#8220;500&#8243; box_shadow_horizontal_tablet=&#8220;0px&#8220; box_shadow_vertical_tablet=&#8220;0px&#8220; box_shadow_blur_tablet=&#8220;40px&#8220; box_shadow_spread_tablet=&#8220;0px&#8220;]<\/p>\n<h1>Kritische Sicherheitsl\u00fccke im WebLogic Server<\/h1>\n<p><strong>Aufgrund eines kritischen Fehlers im WebLogic Server empfiehlt Oracle dringend die Installation von Updates.<\/strong><\/p>\n<p>Eine erhebliche <strong>Sicherheitsl\u00fccke im WebLogic Server<\/strong> hat Oracle zum Ver\u00f6ffentlichen eines Security Updates gezwungen. Der aktuelle Security Alert\u00a0<a href=\"https:\/\/www.oracle.com\/technetwork\/security-advisory\/alert-cve-2019-2729-5570780.html\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2019-2729<\/a> bezieht sich auf die Versionen 10.3.6.0.0, 12.1.3.0.0 und 12.2.1.3.0, die eine <strong>Deserialisierungsschwachstelle<\/strong> der von WebLogic verwendeten Klasse XMLDecoder aufweisen.<\/p>\n<p>Oracle stuft die Sicherheitsl\u00fccke mit 9,8 von 10 als <strong>sehr kritisch<\/strong> ein, da potenzielle Angreifer sie ohne Authentifizierung durch Nutzername und Passwort aus der Ferne ausnutzen k\u00f6nnten. Dementsprechend r\u00e4t der Software-Gigant dazu, die\u00a0im <a href=\"https:\/\/www.oracle.com\/technetwork\/security-advisory\/alert-cve-2019-2729-5570780.html\" target=\"_blank\" rel=\"noopener noreferrer\">Security Alert\u00a0Advisory<\/a> enthaltenen Updates schnellstm\u00f6glich zu installieren.<\/p>\n<h2>Zuerst das Upgrade, dann das Update<\/h2>\n<p>Weiterhin werden <strong>Produkt-Updates<\/strong> empfohlen, um sicherzustellen, dass die neuesten Sicherheits-Patches f\u00fcr die aktuell ausgef\u00fchrten Versionen des WebLogic Servers verf\u00fcgbar sind. Unternehmen, die veraltete Produktversionen im Einsatz haben, sind nach Meinung von Oracle sehr wahrscheinlich von verschiedenen Schwachstellen betroffen und sollten daher <strong>dringend auf unterst\u00fctzte Versionen aktualisieren<\/strong>.<\/p>\n<p>Sind auch Sie von den Sicherheitsl\u00fccken betroffen und ben\u00f6tigen Unterst\u00fctzung beim Einspielen der Updates? Nutzen Sie eine nicht supportete Produktversion? In allen F\u00e4llen <a href=\"https:\/\/pitss.org\/de\/kontaktformular\/\">stehen wir Ihnen mit Rat und Tat zur Verf\u00fcgung<\/a>.<\/p>\n<p>[\/et_pb_text][\/et_pb_column_inner][\/et_pb_row_inner][\/et_pb_column][et_pb_column type=&#8220;1_4&#8243;][et_pb_search _builder_version=&#8220;3.0.74&#8243; hide_button=&#8220;off&#8220; exclude_pages=&#8220;on&#8220; exclude_posts=&#8220;off&#8220; include_categories=&#8220;118,189,147,199,19,173,175,176,5,112,180,18,150,141,153,142,200,144,190,80,185,177,137,159,96,161,99,113,191,192,201,25,162,202,203,82,97,105,106,151,107,108,194,193,156,186,154,121,100,3,69,148,195,85,131,170,115,86,160,87,145,117,196,114,138,2,133,83,164,165,98,143,139,109,157,166,110,158,111,102,167,155,168,197,163,84,101,4,171,204,140,116,178,174,136,187,179,103,1,198,172,152,169,188,91,104,92,149&#8243; background_layout=&#8220;light&#8220; button_color=&#8220;#006bb3&#8243; button_text_color=&#8220;#ffffff&#8220; placeholder=&#8220;Artikel suchen&#8220; module_alignment=&#8220;left&#8220; button_text_size__hover_enabled=&#8220;off&#8220; button_text_size__hover=&#8220;null&#8220; button_one_text_size__hover_enabled=&#8220;off&#8220; button_one_text_size__hover=&#8220;null&#8220; button_two_text_size__hover_enabled=&#8220;off&#8220; button_two_text_size__hover=&#8220;null&#8220; button_text_color__hover_enabled=&#8220;off&#8220; button_text_color__hover=&#8220;null&#8220; button_one_text_color__hover_enabled=&#8220;off&#8220; button_one_text_color__hover=&#8220;null&#8220; button_two_text_color__hover_enabled=&#8220;off&#8220; button_two_text_color__hover=&#8220;null&#8220; button_border_width__hover_enabled=&#8220;off&#8220; button_border_width__hover=&#8220;null&#8220; button_one_border_width__hover_enabled=&#8220;off&#8220; button_one_border_width__hover=&#8220;null&#8220; button_two_border_width__hover_enabled=&#8220;off&#8220; button_two_border_width__hover=&#8220;null&#8220; button_border_color__hover_enabled=&#8220;off&#8220; button_border_color__hover=&#8220;null&#8220; button_one_border_color__hover_enabled=&#8220;off&#8220; button_one_border_color__hover=&#8220;null&#8220; button_two_border_color__hover_enabled=&#8220;off&#8220; button_two_border_color__hover=&#8220;null&#8220; button_border_radius__hover_enabled=&#8220;off&#8220; button_border_radius__hover=&#8220;null&#8220; button_one_border_radius__hover_enabled=&#8220;off&#8220; button_one_border_radius__hover=&#8220;null&#8220; button_two_border_radius__hover_enabled=&#8220;off&#8220; button_two_border_radius__hover=&#8220;null&#8220; button_letter_spacing__hover_enabled=&#8220;off&#8220; button_letter_spacing__hover=&#8220;null&#8220; button_one_letter_spacing__hover_enabled=&#8220;off&#8220; button_one_letter_spacing__hover=&#8220;null&#8220; button_two_letter_spacing__hover_enabled=&#8220;off&#8220; button_two_letter_spacing__hover=&#8220;null&#8220; button_bg_color__hover_enabled=&#8220;off&#8220; button_bg_color__hover=&#8220;null&#8220; button_one_bg_color__hover_enabled=&#8220;off&#8220; button_one_bg_color__hover=&#8220;null&#8220; button_two_bg_color__hover_enabled=&#8220;off&#8220; button_two_bg_color__hover=&#8220;null&#8220; form_field_font_size=&#8220;14px&#8220; form_field_letter_spacing=&#8220;0px&#8220; form_field_line_height=&#8220;1em&#8220; form_field_text_shadow_horizontal_length=&#8220;0em&#8220; form_field_text_shadow_vertical_length=&#8220;0em&#8220; form_field_text_shadow_blur_strength=&#8220;0em&#8220; form_field_text_shadow_color=&#8220;rgba(0,0,0,0.4)&#8220; form_field_text_shadow_style=&#8220;none&#8220; \/][et_pb_sidebar area=&#8220;et_pb_widget_area_1&#8243; _builder_version=&#8220;3.0.74&#8243; orientation=&#8220;right&#8220; background_layout=&#8220;light&#8220; \/][et_pb_button _builder_version=&#8220;3.0.74&#8243; button_text=&#8220;\u2191 Zur\u00fcck zur \u00dcbersicht&#8220; button_url=&#8220;https:\/\/pitss.org\/de\/techblog&#8220; url_new_window=&#8220;off&#8220; button_alignment=&#8220;center&#8220; background_layout=&#8220;light&#8220; custom_button=&#8220;on&#8220; button_text_color=&#8220;#9b9b9b&#8220; button_border_color=&#8220;#d2d2d2&#8243; button_letter_spacing=&#8220;0&#8243; button_icon_placement=&#8220;right&#8220; button_letter_spacing_hover=&#8220;0&#8243; button_text_size=&#8220;16&#8243; button_text_size__hover_enabled=&#8220;off&#8220; button_text_size__hover=&#8220;null&#8220; button_one_text_size__hover_enabled=&#8220;off&#8220; button_one_text_size__hover=&#8220;null&#8220; button_two_text_size__hover_enabled=&#8220;off&#8220; button_two_text_size__hover=&#8220;null&#8220; button_text_color__hover_enabled=&#8220;off&#8220; button_text_color__hover=&#8220;null&#8220; button_one_text_color__hover_enabled=&#8220;off&#8220; button_one_text_color__hover=&#8220;null&#8220; button_two_text_color__hover_enabled=&#8220;off&#8220; button_two_text_color__hover=&#8220;null&#8220; button_border_width__hover_enabled=&#8220;off&#8220; button_border_width__hover=&#8220;null&#8220; button_one_border_width__hover_enabled=&#8220;off&#8220; button_one_border_width__hover=&#8220;null&#8220; button_two_border_width__hover_enabled=&#8220;off&#8220; button_two_border_width__hover=&#8220;null&#8220; button_border_color__hover_enabled=&#8220;off&#8220; button_border_color__hover=&#8220;null&#8220; button_one_border_color__hover_enabled=&#8220;off&#8220; button_one_border_color__hover=&#8220;null&#8220; button_two_border_color__hover_enabled=&#8220;off&#8220; button_two_border_color__hover=&#8220;null&#8220; button_border_radius__hover_enabled=&#8220;off&#8220; button_border_radius__hover=&#8220;null&#8220; button_one_border_radius__hover_enabled=&#8220;off&#8220; button_one_border_radius__hover=&#8220;null&#8220; button_two_border_radius__hover_enabled=&#8220;off&#8220; button_two_border_radius__hover=&#8220;null&#8220; button_letter_spacing__hover_enabled=&#8220;on&#8220; button_letter_spacing__hover=&#8220;0&#8243; button_one_letter_spacing__hover_enabled=&#8220;off&#8220; button_one_letter_spacing__hover=&#8220;null&#8220; button_two_letter_spacing__hover_enabled=&#8220;off&#8220; button_two_letter_spacing__hover=&#8220;null&#8220; button_bg_color__hover_enabled=&#8220;off&#8220; button_bg_color__hover=&#8220;null&#8220; button_one_bg_color__hover_enabled=&#8220;off&#8220; button_one_bg_color__hover=&#8220;null&#8220; button_two_bg_color__hover_enabled=&#8220;off&#8220; button_two_bg_color__hover=&#8220;null&#8220; \/][\/et_pb_column][\/et_pb_section][et_pb_section bb_built=&#8220;1&#8243; specialty=&#8220;off&#8220; prev_background_color=&#8220;#000000&#8243; _builder_version=&#8220;3.10.1&#8243; disabled=&#8220;on&#8220; disabled_on=&#8220;on|on|on&#8220; inner_width=&#8220;auto&#8220; inner_max_width=&#8220;none&#8220;][et_pb_row][et_pb_column type=&#8220;4_4&#8243;][et_pb_comments _builder_version=&#8220;3.0.73&#8243; show_avatar=&#8220;on&#8220; show_reply=&#8220;on&#8220; show_count=&#8220;on&#8220; background_layout=&#8220;light&#8220; border_style=&#8220;solid&#8220; custom_button=&#8220;off&#8220; button_letter_spacing=&#8220;0&#8243; button_icon_placement=&#8220;right&#8220; button_letter_spacing_hover=&#8220;0&#8243; border_radii=&#8220;on||||&#8220; \/][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Kritische Sicherheitsl\u00fccke im WebLogic Server Aufgrund eines kritischen Fehlers im WebLogic Server empfiehlt Oracle dringend die Installation von Updates. Eine erhebliche Sicherheitsl\u00fccke im WebLogic Server hat Oracle zum Ver\u00f6ffentlichen eines Security Updates gezwungen. Der aktuelle Security Alert\u00a0CVE-2019-2729 bezieht sich auf die Versionen 10.3.6.0.0, 12.1.3.0.0 und 12.2.1.3.0, die eine Deserialisierungsschwachstelle der von WebLogic verwendeten Klasse XMLDecoder aufweisen. Oracle stuft die [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":19004,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[3,81],"tags":[318,66,317,396],"class_list":["post-27020","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-home-page-featured","category-tech-blog","tag-critical-patch","tag-oracle","tag-update","tag-weblogic"],"_links":{"self":[{"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/posts\/27020","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/comments?post=27020"}],"version-history":[{"count":4,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/posts\/27020\/revisions"}],"predecessor-version":[{"id":27544,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/posts\/27020\/revisions\/27544"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/media\/19004"}],"wp:attachment":[{"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/media?parent=27020"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/categories?post=27020"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/pitss.org\/de\/wp-json\/wp\/v2\/tags?post=27020"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}