In VWAN you have a VPN gateway, and you can simply connect an AWS end or Oracle end via VPN connection that might be using a ER or S2S or P2S.
For example, if you have opted for P2S in this case then remote users(Oracle or AWS) who are using a point-to-site connection to Azure access on-premises workloads and applications by transiting through the cloud. This path gives remote users the flexibility to access workloads that are both deployed in Azure and on-premises.
Here are the supporting traffic paths in global transit connectivity.
Please do not forget to "Accept the answer" wherever the information provided helps you to help others in the community.