===============================
Patch Set Update (PSU) for Bug: 27912627
===============================
Date: Wed Jun 27 09:48:28 2018
---------------------------------
Platform Patch for : Generic
Product Patched : ORACLE WEBLOGIC SERVER
Product Version : 12.2.1.3.0
This document describes how to install the interim patch for
bug # 27912627. It includes the following sections:
Section 1, "Zero Downtime Patching"
Section 2, "Prerequisites"
Section 3, "Pre-Installation Instructions"
Section 4, "Installation Instructions"
Section 5, "Post-Installation Instructions"
Section 6, "Deinstallation Instructions"
Section 7, "Post Deinstallation Instructions"
Section 8, "Bugs Fixed by This Patch"
Section 9, "Known Issues"
1 Zero Downtime Patching
------------------------------
This patch has been marked as eligible for Zero Downtime Patching.
The type of Zero Downtime Patching supported by this patch is FMW_ROLLING_ORACLE_HOME.
With Zero Downtime Patching, a Patch can be applied to a system in a manner
that does not incur any downtime. This ensures that the system can remain
available and functioning during the patching process. Certain
pre-requisites, however, must be met before the patch can be applied.
For more information, consult the My Oracle Support MOS Note: 1942159.1
2 Prerequisites
----------------
Ensure that you meet the following requirements before you install or
deinstall the patch:
1. Before applying the non-mandatory patches, ensure that you have the
exact symptoms described in the bug.
2. For users of Oracle JDKs and JVMs, we strongly recommend
applying the latest Java Critical Patch Updates (CPUs) as soon as they are
released. Please refer to Obtaining Java SE (JDK/JRE) for
Oracle Fusion Middleware Products (Doc ID 1506916.1) for further information.
https://support.oracle.com/oip/faces/secure/km/DocumentDisplay.jspx?id=1506916.1
3. Oracle Fusion Middleware 12.2.1 products are installed with OPatch NextGen 13.3 to apply interim patches.
The OPatch utility should be updated over time to resolve known issues.
You can check your version using the following command:
ORACLE_HOME/OPatch/opatch version
Checking Patch 6880880, if a new version is available , download "OUI NextGen 13.3" for your platform.
Review the following for more information:
Doc ID 1587524.1, "Using OUI NextGen OPatch 13 for Oracle Fusion Middleware 12c (12.1.2+)"
https://support.oracle.com/rs?type=doc&id=1587524.1
For Oracle Fusion Middleware OPatch usage, refer to the URL below which
redirects to the latest FMW 12c document:
"Oracle Fusion Middleware Patching With OPatch"
http://www.oracle.com/pls/topic/lookup?ctx=fmw122100&id=OPATC
4. Verify the OUI Inventory.
OPatch needs access to a valid OUI inventory to apply patches.
Note: This needs the ORACLE_HOME to be set(refer section "2. Pre-Installation Instructions")
prior to run the below commands:
Validate the OUI inventory with the following commands:
$ opatch lsinventory -jre $ORACLE_HOME/oracle_common/jdk/jre
Note:
All OPatch commands should be run with -jre option.
Make sure the JDK version you use is the certified version for your product.
If the command errors out, contact Oracle Support and work to validate
and verify the inventory setup before proceeding.
5. Confirm the executables appear in your system PATH.
The patching process will use the unzip and the OPatch executables. After
setting the ORACLE_HOME environment, confirm if the following executables
exist, before proceeding to the next step:
- opatch
- unzip
If either of these executables do not show in the PATH, correct the
problem before proceeding.
6. Create a location for storing the unzipped patch. This location
will be referred to later in the document as PATCH_TOP.
NOTE: On WINDOWS, the preferred location is the drive root directory.
For example, "C:\PATCH_TOP" and avoid choosing locations like,
"C:\Documents and Settings\username\PATCH_TOP".
This is necessary due to the 256 characters limitation on windows
platform.
3 Pre-Installation Instructions
-------------------------------
1. Set the ORACLE_HOME environment variable to the directory where you have installed ORACLE WEBLOGIC SERVER.
2. To install this PSU, you must use OPatch version 13.9.4.
If you try to install the PSU with an earlier opatch version
(e.g. 13.9.2.0.0), you will see an error similar to:
===============================
Verifying environment and performing prerequisite checks...
Prerequisite check "CheckMinimumOPatchVersion" failed.
The details are:
The OPatch being used has version 13.9.2.0.0 while the following patch(es)
require higher versions:
Patch 27912627 requires OPatch version 13.9.4.0.0.
Please download latest OPatch from My Oracle Support.
===============================
Opatch to 13.9.4 is available at
http://aru.us.oracle.com:8080/ARU/ViewPatchRequest/process_form?aru=22310944
Please consult the readme file for the OPatch patch for installation
instructions.
4 Installation Instructions
---------------------------
1. Unzip the patch zip file into the PATCH_TOP.
$ unzip -d PATCH_TOP p27912627_122130_Generic.zip
NOTE: On WINDOWS, the unzip command has a limitation of 256 characters in the path name.
If you encounter this, please use an alternate ZIP utility like 7-Zip to unzip the patch.
For example: To unzip using 7-zip, run the command:
"c:\Program Files\7-Zip\7z.exe" x p27912627_122130_Generic.zip
2. Set your current directory to the directory where the patch is located.
$ cd PATCH_TOP/27912627
3. Run OPatch to apply the patch.
$ opatch apply
Note:
-----
When OPatch starts, it validates the patch and makes sure that there are no
conflicts with the software already installed in the ORACLE_HOME.
In case of opatch conflict, you will see a warning message similar to the one mentioned below:
Interim Patch XXXX has Conflict with patch(es) [ YYYY ] in OH ...
Conflict patches: YYYY
Patch(es) YYYY conflict with the patch currently being installed (XXXX).
If you continue, patch(es) YYYY will be rolled back and the new patch (XXXX) will be installed.
If a merge of the new patch (XXXX) and the conflicting patch(es) ( YYYY) is required,contact Oracle Support Services and request a Merged patch.
Do you want to proceed? [y|n]
n
You must stop the patch installation and contact oracle support on how to proceed.
5 Post-Installation Instructions
---------------------------------
Note: The fix for bug 26929163 updates the runtime components for the
WLS plugin for the RCU and Upgrade Assistant tools. It will prevent any
future WLS schema installs or upgrades from allowing WLS schema owners to
retain ANY privs once installation or upgrade have been completed. The
patch will *not* affect schemas that have already been installed or
upgraded to the correct schema version.
For existing installations that wish to remove the ANY privileges that
have been assigned to the WLS schema owners, users can run the script
located at $MW_HOME/oracle_common/common/sql/wlsservices/sql/cleanup.sql
as the DBA user and provide the WLS schema owner names. For example, if
the WLS schema owners are DEV1_WLS and DEV1_WLS_RUNTIME:
sqlplus <dba-connect-info> cleanup.sql DEV1_WLS DEV1_WLS_RUNTIME
6 Deinstallation Instructions
------------------------------
If you experience any problems after installing this patch, remove the patch as
follows:
1. Make sure to follow the same Prerequisites or pre-install steps (if any)
when deinstalling a patch.
This includes setting up any environment variables like ORACLE_HOME and
verifying the OUI inventory before deinstalling.
2. Change to the directory where the patch was unzipped.
$ cd PATCH_TOP/27912627
3. Run OPatch to deinstall the patch.
$ opatch rollback -id 27912627
7 Post Deinstallation Instructions
-----------------------------------
Restart all servers (AdminServer and all Managed server(s)).
This is necessary to redeploy the
没有合适的资源?快使用搜索试试~ 我知道了~
最新2018年7月WebLogic漏洞(CVE-2018-2893) 适用于weblogic12.2.1.3
共996个文件
class:862个
xdiff:41个
xml:41个
需积分: 21 34 下载量 100 浏览量
2018-07-23
21:34:37
上传
评论 1
收藏 6.95MB ZIP 举报
温馨提示
Oracle的高危远程代码执行漏洞(CVE-2018-2893),通过该漏洞攻击者可以在未授权的情况下远程执行任意代码。 受此漏洞影响的版本包括: WebLogic 10.3.6.0 WebLogic 12.1.3.0 WebLogic 12.2.1.2 WebLogic 12.2.1.3 解决方案: 1.控制T3协议的访问 2.升级到 jdk-8u20以上的版本 3.升级补丁
资源推荐
资源详情
资源评论
收起资源包目录
最新2018年7月WebLogic漏洞(CVE-2018-2893) 适用于weblogic12.2.1.3 (996个子文件)
BEA-WEBLOGIC-MIB.asn1 2.67MB
OracleIdentityCloudIntegratorTypeImpl.class 107KB
ServerTransactionImpl.class 100KB
ServerTransactionManagerImpl.class 75KB
XAResourceDescriptor.class 68KB
ServletRequestImpl.class 68KB
PlatformHelperImpl.class 61KB
TransactionImpl.class 57KB
TransactionImpl.class 57KB
ServletResponseImpl.class 53KB
ApplicationImpl.class 50KB
WSDLReaderImpl.class 45KB
OracleIdentityCloudIntegratorMBeanImpl.class 44KB
TransactionManagerImpl.class 40KB
TransactionManagerImpl.class 40KB
RequestManager.class 39KB
RequestManager.class 39KB
FaceletViewHandlingStrategy.class 38KB
UIComponentBase.class 38KB
HttpSOAPConnection.class 38KB
RenderKitUtils.class 37KB
PolicyFeatureUtils.class 36KB
T3Srvr.class 36KB
OracleIdentityCloudIntegratorMBeanImplBeanInfo.class 32KB
RoleManager.class 31KB
PolicyManager.class 31KB
OIDCProviderMetadata.class 31KB
IDCSConfigurationImpl.class 31KB
CertGen.class 31KB
NavigationHandlerImpl.class 31KB
WebAppContainerMBeanImpl.class 30KB
InterceptionMetadata.class 30KB
RSAKey.class 30KB
UIData.class 29KB
WebAppContainerMBeanImplBeanInfo.class 28KB
ApplicationAssociate.class 28KB
WebLogicPluginConstants.class 28KB
FacesFlowDefinitionConfigProcessor.class 28KB
ServerCoordinatorDescriptorManagerImpl.class 27KB
OracleIdentityCloudIntegratorMBeanImpl$Helper.class 27KB
MBeanServerConnectionManager.class 26KB
Util.class 26KB
ELFlash.class 25KB
UIViewRoot.class 24KB
PrincipalAuthenticatorImpl.class 24KB
RuntimeManagerImpl.class 24KB
ExternalContextImpl.class 23KB
WLSContainer.class 23KB
UIComponentClassicTagBase.class 23KB
ECKey.class 23KB
T3SrvrLogger.class 23KB
T3SrvrLogger.class 23KB
WebConfiguration.class 23KB
ServletRequestImpl$SessionHelper.class 23KB
MenuRenderer.class 22KB
ResourceDescriptor.class 22KB
ConfigManager.class 22KB
ApplicationConfigProcessor.class 22KB
ConfigureListener.class 22KB
IDCSTokenAssertImpl.class 22KB
ClientMetadata.class 22KB
TransactionManagerImpl$TMXAResource.class 22KB
TransactionManagerImpl$TMXAResource.class 22KB
AbstractBrokerFactory.class 21KB
LifecycleConfigFactory.class 21KB
UIRepeat.class 20KB
WLSRuntimePlugin.class 20KB
FileServlet.class 20KB
UIComponent.class 20KB
HtmlResponseWriter.class 19KB
ModuleCache.class 19KB
UIInput.class 19KB
MultiViewHandler.class 19KB
IDCSProviderManagerImpl.class 18KB
ServletOutputStreamImpl.class 18KB
ComponentTagHandlerDelegateImpl.class 18KB
FaceletFullStateManagementStrategy.class 18KB
PropagationContext.class 18KB
PropagationContext.class 18KB
IncrementAdvisor2.class 18KB
IncrementAdvisor2.class 18KB
DomainRuntimeServiceMBeanImpl.class 17KB
WebAppContainerMBeanImpl$Helper.class 17KB
ELUtils.class 17KB
OracleIdentityCloudIntegratorType.class 17KB
IDCSAtnLoginModuleImpl.class 16KB
SelfTuningWorkManagerImpl.class 16KB
SelfTuningWorkManagerImpl.class 16KB
DefaultFaceletFactory.class 16KB
OraclePKIMsg_de.class 16KB
CoordinatorDescriptor.class 16KB
CoordinatorDescriptor.class 16KB
ServletRequestImpl$RequestParameters.class 16KB
AbstractConfigProcessor.class 16KB
ClientTubelineDeploymentListener.class 16KB
OIDCClientMetadata.class 15KB
RestoreViewPhase.class 15KB
ResourceHandlerImpl.class 15KB
HtmlBasicRenderer.class 15KB
PlatformHelperImpl$CrashSiteJDBCStoreMBean.class 15KB
共 996 条
- 1
- 2
- 3
- 4
- 5
- 6
- 10
资源评论
oXiaoFeng240991731
- 粉丝: 1
- 资源: 5
上传资源 快速赚钱
- 我的内容管理 展开
- 我的资源 快来上传第一个资源
- 我的收益 登录查看自己的收益
- 我的积分 登录查看自己的积分
- 我的C币 登录后查看C币余额
- 我的收藏
- 我的下载
- 下载帮助
安全验证
文档复制为VIP权益,开通VIP直接复制
信息提交成功