My Oracle Support Banner

April 2018 CVE-2018-2752 Oracle CPU For HCM points To PT Patch As Fix (Doc ID 2392287.1)

Last updated on APRIL 27, 2018

Applies to:

PeopleSoft Enterprise HCM Human Resources - Version 9.2 and later
Information in this document applies to any platform.

Goal

Do we need to apply CVE-2018-2752?

For item CVE-2018-2752, the fix listed (Bug ID 23616412) points to a bug that is referenced in PT 8.55.08 tools patch.

Experience has been that usually the HCM (application) items are resolved in PUM images, and this bug number is not listed in the PI 26 contents list or on Oracle Support as a bug except for in PT 8.55.08.

Products affected:

CVE-2018-2878
• PeopleSoft Enterprise HCM – Shared Components 9.2 (thru PeopleSoft Update Image 25)
CVE-2018-2752
• PeopleSoft Enterprise HCM – Human Resources 9.2 (thru PeopleSoft Update Image 25)

Platforms affected
All operating systems, web servers, Enterprise server, Windows clients and database systems.


Patches:

CVE-2018-2878
• PeopleSoft Enterprise HCM – Shared Components 9.2: Apply the patch for <Bug 27717282>.
CVE-2018-2752
• PeopleSoft Enterprise HCM – Human Resources 9.2: Apply the patch for <Bug 23616412>.

PeopleSoft Enterprise HRMS Critical Patch Update Pre-installation Note

 

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.