LWN.net Logo

tomcat: insufficient input sanitizing

Package(s):tomcat5.5 CVE #(s):CVE-2008-1947
Created:June 10, 2008 Updated:February 17, 2009
Description: From the Debian advisory: It was discovered that the Host Manager web application performed insufficient input sanitizing, which could lead to cross-site scripting.
Alerts:
SuSE SUSE-SR:2009:004 2009-02-17
Red Hat RHSA-2008:0864-02 2008-10-02
Red Hat RHSA-2008:0862-02 2008-10-02
Fedora FEDORA-2008-8113 2008-09-16
Fedora FEDORA-2008-8130 2008-09-16
Fedora FEDORA-2008-7977 2008-09-11
Mandriva MDVSA-2008:188 2008-09-05
CentOS CESA-2008:0648 2008-08-28
Red Hat RHSA-2008:0648-01 2008-08-27
SuSE SUSE-SR:2008:014 2008-07-04
Debian DSA-1593-1 2008-06-09

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds