|
|
| |
|
| |
tomcat: multiple vulnerabilities
| Package(s): | tomcat6 |
CVE #(s): | CVE-2011-3375
CVE-2011-5062
CVE-2011-5063
CVE-2011-5064
CVE-2012-0022
|
| Created: | February 2, 2012 |
Updated: | May 30, 2012 |
| Description: |
From the Debian advisory:
CVE-2011-3375: Incorrect request caching could lead to information disclosure.
CVE-2011-5062 CVE-2011-5063 CVE-2011-5064:
The HTTP Digest Access Authentication implementation performed
insufficient countermeasures against replay attacks.
CVE-2012-0022:
This update adds countermeasures against a collision denial of
service vulnerability in the Java hashtable implementation and
addresses denial of service potentials when processing large
amounts of requests. |
| Alerts: |
|
( Log in to post comments)
|
|
|