Oracle releases its security updates every three months on Tuesday, which it referred to as “Critical Patch Updates” Yesterday, Oracle released its first quarterly CPU-date of this year, issuing a total of 169 security fixes for hundreds of its products including Java, Fusion Middleware, Enterprise Manager and MySQL. Four Java flaws were marked most severe and received a score of 10.0 on the Common Vulnerability Scoring System (CVSS), the most critical ranking. Oracle has received specific reports of malicious exploitation of vulnerabilities for which Oracle has already released fixes.
Source: https://thehackernews.com/2015/01/java-update-patch-vulnerability.html

