My Oracle Support Banner

EM 13.4 : JDK Vulnerabilities Reported For BI Java files of EM Installation (Doc ID 2696447.1)

Last updated on JANUARY 19, 2022

Applies to:

Enterprise Manager Base Platform - Version 13.4.0.0.0 and later
Oracle Business Intelligence Enterprise Edition - Version 12.2.1.0.0 to 12.2.1.0.0 [Release 12g]
Information in this document applies to any platform.

Symptoms

Security scan reports vulnerabilities stating the old JDK versions being in use in EM locations:

Example:

OMS_ORACLE_HOME/bi/modules/oracle.bi.datadirect.odbc/8.0.1/jre/bin/java 1.7.0_60-b19
OMS_ORACLE_HOME /bi/modules/oracle.bi.datadirect.odbc/8.0.2/jre/bin/java 1.7.0_60-b19
OMS_ORACLE_HOME /bi/modules/oracle.bi.datadirect.odbc/8.0.2/jre//lib/rt.jar

Though these files are not used by EM at all, the presence of old version files are causing the scan reports to show these vulnerabilities.

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.