This critical patch update contains 5 security fixes for the Oracle Database Server. One of the vulnerabilities could have been exploited over the network without a valid username and password.
Security Issues:
* CVE-2013-3751
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-3751>
* CVE-2013-3774
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-3774>
* CVE-2014-4236
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4236>
* CVE-2014-4237
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4237>
* CVE-2014-4245
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4245>