My Oracle Support Banner

Fix For CVE-2021-21345, CVE-2013-7285, And CVE-2021-21344 in Tuxedo (Doc ID 2925095.1)

Last updated on FEBRUARY 12, 2024

Applies to:

Oracle Tuxedo - Version 12.2.2 and later
Information in this document applies to any platform.

Goal

Oracle Tuxedo, Version 12.2.2.0.0_VS2017, 64-bit, Patch Level 091

The below jar file has vulnerabilities (CVE-2021-21345, CVE-2013-7285, CVE-2021-21344)

/tuxedo/tuxedo12.2.2.0.0_VS2017/udataobj/nanoagent/lib/xstream-1.2.2.jar

Is there a fix available for Tuxedo to resolve the CVE?
 

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Goal
Solution


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.